https://twitter.com/packetwatch/status/1663644517986349056?s=20
A detection of QBot which seems interessting, I don't think that the ZIP → JS infection chain is common for this TA.
#Qbot #qakbot #iceid #cti
#qbot #qakbot #IceID #CTI