Ice IX

First seen
2011-01-01 00:00:00
Malware type
botnet, trojan, credential-stealer
Family
Malware family
Profile updated
2026-07-07 15:06:39

Targeted industries: financial-services

Context

The ICE IX bot is a banking trojan derived of the Zeus botnet because it uses significant parts of Zeus’s source code. ICE IX communicates using the HTTP protocol, so it can be considered to be a third-generation botnet. While it has been used for a variety of purposes, a primary threat of ICE IX comes from its manipulation of banking operations on compromised machines. As with any bot, execution of the bot results in establishing a master-slave relationship between the botmaster and the compromised computer.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Ice Ix (report)
  • Kaspersky — 29111 (report)
  • virusbulletin.com — Inside Ice Ix Bot Descendent Zeus (report)
  • Kaspersky — 29577 (report)
  • Trend Micro — Zeus Gets Another Update (report)

External references