TrickBot

MITRE
Tipo Malware:
Other
Prima attivita:
Unknown
Ultima attivita:
Unknown
Dettagli:

[TrickBot](https://attack.mitre.org/software/S0266) is a Trojan spyware program written in C++ that first emerged in September 2016 as a possible successor to [Dyre](https://attack.mitre.org/software/S0024). [TrickBot](https://attack.mitre.org/software/S0266) was developed and initially used by [Wizard Spider](https://attack.mitre.org/groups/G0102) for targeting banking sites in North America, Australia, and throughout Europe; it has since been used against all sectors worldwide as part of "big game hunting" ransomware campaigns.(Citation: S2 Grupo TrickBot June 2017)(Citation: Fidelis TrickBot Oct 2016)(Citation: IBM TrickBot Nov 2016)(Citation: CrowdStrike Wizard Spider October 2020)

Tecniche Associate (55)
ID ATT&CK Tattiche
T1005 Data from Local System -
T1007 System Service Discovery -
T1008 Fallback Channels -
T1016 System Network Configuration Discovery -
T1018 Remote System Discovery -
T1021.005 VNC -
T1027 Obfuscated Files or Information -
T1027.002 Software Packing -
T1027.013 Encrypted/Encoded File -
T1033 System Owner/User Discovery -
T1036 Masquerading -
T1041 Exfiltration Over C2 Channel -
T1053.005 Scheduled Task -
T1055 Process Injection -
T1055.012 Process Hollowing -
Alias (210)
Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD Totbrick TSPY_TRICKLOAD
Metadata
ID: 2
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00