Security analyst @hasherezade and Jrme Segura take a deep dive into the IcedID Trojan, describing the new payloads of this advanced malware. The Trojan is now being delivered via steganography, as the data is encrypted and encoded with the content of a valid PNG image. In this blog post, we take a closer look at the functionality and implementation of the downloaded sample. We can also see the use of the. use of a. certificate that will be used for intercepting traffic: VeriSign. The. application achieves the task with a scheduled task: the. task has two triggers: the user login and at the. scheduled.”]