IcedID and Trickbot: A Give-and-Take Relationship
released on 2018-08-08 @ 09:41:51 AM
Operations of the banking trojan IcedID have been active since its discovery in September of 2017. In the first half of this year it has also been distributed by other well-known banking Trojan families, such as Emotet and Ursnif. Using this kind of scheme, distributed malware families can increase their spread potential. There are two possible motives for this behavior. The first is that it allows the downloaders, which in this case are also banking Trojans, to perform their own cybercrime operations while also profiting by providing distribution services to their kin. In the second, a subscriber to different malware services may simply want to increase the chance of extracting valuable information by bombarding their victims with multiple malware exploits.