TrickBot is a multi-purpose Windows malware platform that uses different modules to perform various malicious activities, including information stealing, password stealing, Windows domain infiltration, and malware delivery. An Anchor_DNS malware has been ported to a new Linux backdoor version called ‘Anchor_Linux’ The malware also contains an embedded Windows TrickBot executable that can drop malware on the Linux device and execute it. When installed, the malware will configure itself to run every minute using the following crontab entry: * * * root [filename]
Source: https://www.bleepingcomputer.com/news/security/linux-warning-trickbot-malware-is-now-infecting-your-systems/

