Advertisement
malwageddon

Malware email campaign with .gadget files attachments

May 19th, 2014
349
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.19 KB | None | 0 0
  1. ### IOCs for malware email campaign with .gadget files attachments ###
  2.  
  3. Fake 'From' email address - 'hp.digital0@nactp.org'
  4. Received: from llagny-156-34-41-28.w80-14.abo.wanadoo.fr (LLagny-156-34-41-28.w80-14.abo.wanadoo.fr. [80.14.197.28])
  5.  
  6. ## Email body:
  7.  
  8. Content-Type: text/plain
  9. Content-Transfer-Encoding: 8bit
  10.  
  11. Important Company Update
  12.  
  13. *********************************
  14.  
  15. Please read carefully the attached document
  16.  
  17. **********************************
  18.  
  19. CONFIDENTIAL NOTICE: The contents of this message, including any attachments, are confidential and are intended solely for the use of the person or entity to whom the message was addressed. If you are not the intended recipient of this message, please be advised that any dissemination, distribution, or use of the contents of this message is strictly prohibited. If you received this message in error, please notify the sender. Please also permanently delete all copies of the original message and any attached documentation. Thank you.
  20.  
  21.  
  22. ## Attachment header:
  23.  
  24. Content-Type: application/zip; name="internal_use_only.gadget"
  25. Content-Transfer-Encoding: base64
  26. Content-Disposition: attachment; filename="internal_use_only.gadget"
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement