Nick Carr, Senior Manager, Detection and Analysis, FireEye on Bad Rabbit
“Around 2017-10-24 at 08:00:00 UTC, FireEye began to detect and block attempts to infect multiple clients with a drive-by download masquerading as a Flash Update (install_flash_player.exe), hosted on attacker infrastructure 1dnscontrol[.]com. The






