logo

Zscaler Research: Malicious Office files dropping Kasidet and Dridex

ID: b139f1e6-6ece-4ed0-89a2-775870c44e76

STIX ID: report--b139f1e6-6ece-4ed0-89a2-775870c44e76

Threat Score

70/100

Uploaded: 2026-08-21

Published Date: 2016-02-15

Last Modified Date: 2016-02-15

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
A detailed analysis of a malware campaign delivering Kasidet and Dridex through malicious Office documents with obfuscated macros, including the malware's capabilities (persistence, anti-analysis, memory scraping, and browser data theft), hardcoded C2 infrastructure, and commands used to communicate with controllers.