OriginBot
Aliases: OriginBotnet, OriginLoader
- First seen
- 2022-05-15 00:00:00
- Malware type
- credential-stealer, downloader, loader
- Family
- Malware family
- Last IoC activity
- 2026-07-22 02:31:31
- Profile updated
- 2026-07-07 15:14:42
Targeted industries: financial-services retail-and-hospitality technology-and-telecommunications
Context
OriginBot is a modular information stealer which can also download and execute other malicious payloads.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Originbot (report)
- fortinet.com — Originbotnet Spreads Via Malicious Word Document (report)