PoohMilk Loader

First seen
2022-06-01 00:00:00
Malware type
loader
Family
Malware family
Profile updated
2026-07-07 12:52:37

Targeted industries: financial-services government-and-public-sector

Context

PoohMilk Loader is a malware strain primarily used to load and execute additional malicious payloads on infected systems. It has been observed in attacks targeting financial and governmental sectors, serving as a precursor to more damaging threats.

Reports & references

  • Cisco Talos — Korea In Crosshairs (report)
  • researchcenter.paloaltonetworks.com — Unit42 Freemilk Highly Targeted Spear Phishing Campaign (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Poohmilk (report)

External references