KBOT

KBOTKBOT

Description

KBOT penetrates users’ computers via the Internet or a local network, or from infected external media. After the infected file is launched, the malware gains a foothold in the system, writing itself to Startup and the Task Scheduler, and then deploys web injects to try to steal the victim’s bank and personal data. For the same purpose, KBOT can download additional stealer modules that harvest and send to the C&C server almost full information about the user: passwords/logins, cryptowallet data, lists of files and installed applications, and so on.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
BOK
Software
KillBot_Virus
Software
QakBot
Software
Qbot
Software
Sibot
Software
Lokibot
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.