.. /.Iso

Executable
Native
Double Click

Author:

mr.d0x

Description:

ISO or ISO Image files are similiar to disc images. They can be used by attackers to bypass file filters and evade antivirus.

OS:

Windows
Mac

Recommendation:

Block the download and execution of ISO files. Whitelist users/groups when required.

Resources:

https://www.blokworx.com/2020/01/14/iso-files-are-being-used-to-deliver-malware/

File Samples:

Contributions: