Beware of Coronavirus-themed Attack that Attacks Windows Computer to Install’s Lokibot Malware

A new campaign observed using COVID-19/Coronavirus-themed email appears to be coming from the World Health Organization (WHO) delivers the infamous Lokibot malware.

The emails include a compressed file and the compression used is ARJ, which is used for creating high-efficiency compressed file archives.

According to Fortiguard telemetry, the campaign found to be active since March 27 and it attacks the following countries.

“The Top 10 sites targeted by this campaign: Turkey (29%), Portugal (19%), Germany (12%), Austria (10%), and the United States (10%) top the list, with Belgium, Puerto Rico, Italy, Canada, and Spain rounding out the top 10 with less than one percent each.”

worth reading have a look: