By monitoring the campaign primarily targeting Japanese service providers, FortiGuard Labs was able to identify this campaign and what, to the best of our knowledge, is a new malware family. During our analysis, we also encountered other samples that were not completely developed and lacked some of the functionalities discussed in this blogpost, suggesting that the malware is currently under development and is being tested in the wild. The capabilities of this family are limited at the moment, but the fact that we were able to find different samples that showed significant improvement in the span of a few weeks shows that this family should not be underestimated.

REFERENCE:
https://www.fortinet.com/blog/threat-research/funkybot-malware-targets-japan.html
TARGETED COUNTRY:
MALWARE FAMILY:
FunkyBot
ATTACK ID:
T1045 – Software Packing