Zscaler Research: Malicious Office files dropping Kasidet and Dridex
ID: b139f1e6-6ece-4ed0-89a2-775870c44e76
STIX ID: report--b139f1e6-6ece-4ed0-89a2-775870c44e76
Threat Score
70/100
Uploaded: 2026-08-21
Published Date: 2016-02-15
Last Modified Date: 2016-02-15
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
A detailed analysis of a malware campaign delivering Kasidet and Dridex through malicious Office documents with obfuscated macros, including the malware's capabilities (persistence, anti-analysis, memory scraping, and browser data theft), hardcoded C2 infrastructure, and commands used to communicate with controllers.
