The New Era Of IcedID

March 30, 2023

New variants of IcedID were discovered being used by multiple threat actors. The forked version of the malicious software removed the banking functionality and may have ties to the Emotet malware family. The initial infection vector consisted of spam emails with malicious attachments including some messages with Microsoft OneNote attachments.