s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-js.icecube

📛 Threat Title

Malware family: IceCube

Category: IceCube First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `js.icecube`. Printable name: IceCube.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (10)

  • web:cybergladius.com

    A walk-through of the IcedID Malware Family for the LetsDefend's DFIR Challenge. An analysis of the IcedID malware and how to defend against it.

  • web:cybersecuritynews.com

    Two sophisticated Linux rootkits are posing increasingly serious threats to network security by exploiting eBPF technology to hide their presence from traditional detection systems. BPFDoor and Symbiote, both originating from 2021, represent a dangerous class of malware that combines advanced kernel-level access with powerful evasion capabilities.

  • web:malpedia.caad.fkie.fraunhofer.de

    According to Proofpoint, IceCube is a JavaScript-based stealer likely developed with the assistance of a large language model, targeting Roundcube webmail instances. It escapes the webmail's iFrame context via DOM traversal to access the full document and the authentication session, then exfiltrates usernames, passwords, two-factor authentication material, cookies, and browser reconnaissance ...

  • web:malpedia.caad.fkie.fraunhofer.de

    This page gives an overview of all malware families that are covered on Malpedia, supplemented with some basic information for each family .

  • web:www.breachsense.com

    Complete malware remediation now requires addressing both the infected endpoint and the stolen authentication data. Your malware incident response playbook must account for both.

  • web:www.cisa.gov

    It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.

  • web:www.fortinet.com

    FortiGuard Labs discovered new Symbiote and BPFDoor variants exploiting eBPF filters to enhance stealth through IPv6 support, UDP traffic, and dynamic port hopping for covert C2 communication.

  • web:www.microsoft.com

    Understand how this virus or malware spreads and how its payloads affects your computer. Protect against this threat, identify symptoms, and clean up or remove infections.

  • web:www.ncsc.gov.uk

    This guidance helps private and public sector organisations deal with the effects of malware (which includes ransomware). It provides actions to help organisations prevent a malware infection, and also steps to take if you're already infected. Following this guidance will reduce: the likelihood of becoming infected the spread of malware throughout your organisation the impact of the infection

  • web:www.reinsurancene.ws

    Patch management, network segmentation, and data backups can reduce the likelihood and financial impact of widespread malware attacks by 50% to 80% when effectively implemented, according to a joint study by CyberCube and Munich Re. The two firms have published key findings from a study on severe cyber accumulation events and how effective mitigation measures can improve organisational ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.