MysteryBot is a recently discovered banking trojan that had very similar features as LokiBot. It is believed that MysteryBot is being created by the same criminal group, so users should expect to see some of the same attack tactics. Smishing and phishing are the previous method of distribution. The latest MysteryBot contains ransomware and keylogger modules. Proper controls surrounding application downloads on Android devices, especially those from untrusted sources, should be restricted. In addition, since Android devices do not officially support Flash Player, this is a good metric to train users with to help reduce the risk of a malicious application being installed.