TA800TA800

Also known as: TA800

Known aliases
1

Profile

This attacker is an affiliate distributor of the The Trick, also known as Trickbot, and BazaLoader. (For more on how affiliates work, see the description of TA573). TA800 has targeted a wide range of industries in North America, infecting victims with banking Trojans and malware loaders (malware designed to download other malware onto a compromised device). Malicious emails have often included recipients’ names, titles and employers along with phishing pages designed to look like the targeted company. Lures have included hard-to-resist subjects such as related to payment, meetings, termination, bonuses and complaints in the subject line or body of the email.

Aliases· 1

TA800

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
TA866
Actor
TA530
Actor
TA570
Actor
TA578
Actor
Threat Actor 888
Actor
TA547
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.