OriginBot

Aliases: OriginBotnet, OriginLoader

First seen
2022-05-15 00:00:00
Malware type
credential-stealer, downloader, loader
Family
Malware family
Last IoC activity
2026-07-22 02:31:31
Profile updated
2026-07-07 15:14:42

Targeted industries: financial-services retail-and-hospitality technology-and-telecommunications

Context

OriginBot is a modular information stealer which can also download and execute other malicious payloads.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Originbot (report)
  • fortinet.com — Originbotnet Spreads Via Malicious Word Document (report)

External references