Malware

Phorpiex

Also known as: Trik · phorphiex

Proofpoint describes Phorpiex/Trik as a SDBot fork (thus IRC-based) that has been used to distribute GandCrab, Pushdo, Pony, and coinminers. The name Trik is derived from PDB strings.

Indicators of Compromise 22

MITRE ATT&CK TTPs 5

Source Articles