DarkTequila - description
- Last Updated: May 1, 2026
- 1 minute read
- Flowmon Products
- Flowmon Anomaly Detection System
- Documentation
Source:
This banking malware primarily targets customers of Mexican banks. It spreads through spear-phishing emails and infected USB devices. The malware uses keylogging and system monitoring to steal credentials from banking services, browsers, and email accounts. When a user connects any USB device to an infected computer, the malware copies itself to the device and uses it to spread to other systems.
Flowmon ADS detects when infected systems communicate with the malware's command and control (C&C) servers.