 Hello! Lately we had some malicious campaigns where malware was spammed and the malware was in an attachment. It's actually an ISO file. So files that are used for CD or DVD images. And I've blogged about, on my blog about those files here. And here in this video I'm going to demo them. So the thing about ISO files, here I have an ISO file. Thing about ISO files is that Windows 8, Windows 10 can open these files. So here I have such a file downloaded from the internet. As I look at the properties you can see that it's marked that it comes from the internet. And just by double clicking it will open the file. Here it is mounted automatically as drive E. And you can see that it contains a Word document. So and this is what would be spammed by malware orders. So a malicious Word document or even executables or JavaScript can be put inside. Now if we look at the properties of the demo document, then here it is not marked as coming from the internet. So the mark from the internet that is on the ISO file is not propagated to the content. So the contained files are not marked. And if I open this here with Word, then you will see that I am not in protected view. So the document is just opened. I'm not in protected view. It is read only because it's a CD media, that's a read only media. And here the document is open, not in protected view.