2021-03-11 - ICEDID (BOKBOT) FROM EXCEL SPREADSHEET MACRO

ASSOCIATED FILES:

NOTES:

 

IMAGES


Shown above:  Screenshot of spreadsheet used for this infection.

 


Shown above:  Traffic from the infection filtered in Wireshark.

 


Shown above:  Scheduled task to keep IcedID persistent.

 

 

Click here to return to the main page.