2022-01-06 (THURSDAY) - TA551 (SHATHAK) PUSHES ICEDID (BOKBOT)
- 2022-01-06-IOCs-for-TA551-IcedID.txt.zip 3.5 kB (3,517 bytes)
- 2022-01-06-TA551-IcedID-infection.pcap.zip 2.7 MB (2,691,671 bytes)
- 2022-01-06-TA551-IcedID-malware-and-artifacts.zip 1.3 MB (1,273,331 bytes)
- This is the second day in a row for TA551 activity.
- Today's Word docs use and English template, but they have mostly Italian file names.
- All zip archives on this site are password-protected. If you don't know the password, see the "about" page of this website.
Shown above: Screenshot of the infection traffic filtered in Wireshark.
Click here to return to the main page.