Loda Information Stealer Trojan

Loda is a trojan with information stealing, credential harvesting and remote execution capabilities.

Loda is distributed via spam or phishing emails containing Microsoft Word documents containing malicious macros, executables or embedded Packager objects. Opening these causes Loda to download and install. One this is completed it connects to a command and control server and reports the following information on the device and user.

Loda can perform several functions once a device has been compromised including downloading and uploading files, keylogging, force reboots, execute processes and open chat windows.

Affected Platforms

Microsoft Windows – All versions

