Advertisement
ExecuteMalware

2021-07-26 Agent Tesla IOCs

Jul 26th, 2021
11,540
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.54 KB | None | 0 0
  1. THREAT IDENTIFICATION: AGENT TESLA
  2.  
  3. SUBJECTS OBSERVED
  4. RE: RQF UKLSiP 40-4_RP_Z
  5.  
  6. SENDERS OBSERVED
  7. meiqin.wen@cn.leggett.com
  8.  
  9. MALDOC FILE HASHES
  10. UKLSiP 40-4.zip
  11. 00157f98b08a38551dbd10d40baae91e
  12.  
  13. AGENT TESLA PAYLOAD FILE HASHES
  14. UKLSiP 40-4.exe
  15. 13689d3a5e66bf63310432308f682d22
  16.  
  17. AGENT TESLA ESMTP DESTINATION
  18. mail.roplantpakistan.com
  19. https://148.66.136.56:587
  20.  
  21. SENDER/RECIPIENT
  22. sales@roplantpakistan.com
  23.  
  24. SUPORTING EVIDENCE
  25. https://www.virustotal.com/gui/file/db4f9a9828a3d4382e970566f66484d168c7341533ca79ddd618a03252057210/detection
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement