2018-12-17 - FILES FOR AN ISC DIARY (PASSWORD-PROTECTED WORD DOCS PUSH ICEDID)
NOTICE:
- The zip archives on this page have been updated, and they now use the new password scheme. For the new password, see the "about" page of this website.
NOTES:
- The associated ISC diary is: Malspam links to password-protected Word docs that push IcedID (Bokbot)
ASSOCIATED FILES:
- Zip archive of the infection traffic: 2018-12-17-IcedID-from-password-protected-Word-doc.pcap.zip 983 kB (982,894 bytes)
- Zip archive of malware from the infected Windows host: 2018-12-17-malware-from-password-protected-Word-doc-pushing-IcedID.zip 314 kB (313,926 bytes)
Click here to return to the main page.