logo

Cybercriminals Using Coronavirus Scare to Spread Malware

ID: 66738922-18db-5f8f-b636-56b2918b12b0

STIX ID: report--66738922-18db-5f8f-b636-56b2918b12b0

Feed Name: Binary Defense Blog

Threat Score
65/100

Date Published: 2025-08-12

Date Updated: 2026-04-27

...
...

Malicious actors are exploiting public interest in COVID-19 by creating convincing fake resources (e.g., interactive maps) and phishing emails that deliver credential-stealing malware (AZORult, FormBook via GuLoader/MyHealth.exe) or weaponized Word documents. The report warns users to avoid opening unsolicited attachments, not enabling macros or content, verify sender domains, and to obtain official public-health information directly from trusted websites.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.