I published the following diary on isc.sans.org: “Analysis of a Maldoc with Multiple Layers of Obfuscation“.
Thanks to our readers, we get often interesting samples to analyze. This time, Frederick sent us a malicious Microsoft Word document called “Invoice_6083.doc” (which was delivered in a zip archive). I had a quick look at it and it was interesting enough for a quick diary… [Read more]
We recently encountered this sample on our enterprise as well, and I wanted to reach out to see if you want to do some threat intel sharing on this?