2018-12-17 - FILES FOR AN ISC DIARY (PASSWORD-PROTECTED WORD DOCS PUSH ICEDID)
NOTES:
- The ISC diary is for Tuesday 2018-12-18: Malspam links to password-protected Word docs that push IcedID (Bokbot)
- Zip files are password-protected. If you don't know the password, look at the "about" page of this website.
ASSOCIATED FILES:
- Zip archive of the infection traffic: 2018-12-17-IcedID-from-password-protected-Word-doc.pcap.zip 983 kB (982,894 bytes)
- Zip archive of malware from the infected Windows host: 2018-12-17-malware-from-password-protected-Word-doc-pushing-IcedID.zip 313 kB (313,128 bytes)
Click here to return to the main page.