Brad on Twitter: "2022-10-19 (Wednesday) - Saw #CobaltStrike (#BEACON) stager sent to an #IcedID- (#Bokbot-) infected Windows host today. Stager DLL hosted at: hxxp://111.90.146[.]114/download/TZ32-cr.dll - DLL did not execute properly in my lab. Sample available at: https://t.co/4372LxGrDc https://t.co/xg0yuh3EM9" / Twitter
https://twitter.com/malware_traffic/status/1582850206797680641