THREAT DOSSIER / 06

2016 · Modular, multi-stage banking trojan

TrickBot

A flexible platform for credential theft, discovery, lateral movement and delivery of payloads such as Ryuk and Conti.

01

Entry and propagation

Spear phishing, spam, malvertising and exposed network weaknesses such as SMB.

02

Targets

Individuals, companies, hospitals, schools, utilities and governments.

03

Impact

Millions of infected devices, financial-information theft and staging for high-impact ransomware.

04

Defense

Use multifactor authentication, close exposed services, filter email and monitor lateral movement.