ExecuteMalware

2020-11-05 ZLoader IOCs

Nov 5th, 2020
3,582
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.93 KB | None | 0 0
  1. THREAT ATTRIBUTION: ZLOADER
  2.  
  3. SUBJECTS OBSERVED
  4. Additional information about Invoice ## 5719
  5. Detailed Receipt ID 4071
  6. Details about Invoice Number 5894
  7. Details about Receipt No. 1006
  8. Full summary of the Invoice No 7891
  9. Given invoice important information
  10. Invoice details No. #3211
  11. October Service Invoice
  12.  
  13. SENDERS OBSERVED
  14. bassieff596@aol.com
  15. enancy13@aol.com
  16. martinezdonald22@aol.com
  17. milenami678@aol.com
  18. sanchezzprohellomsk@aol.com
  19. shulc_baton@aol.com
  20. wid985eweb@aol.com
  21. wrightjoseph99@aol.com
  22.  
  23. EXCEL FILE HASHES
  24. 333ffc274057ff3dfaaec11197697e7c
  25. 6526157eb5210969609ee561c7e8f21d
  26. 8c4a06af1394e3c4131128302e5d3c0c
  27. 8ca937ef271da196182bb273bb267a3c
  28. c693b67ae2184ead5801c8afb06bd8c4
  29. ec92c122aa3d35b5b5255568f09e227e
  30.  
  31. ZLOADER PAYLOAD
  32. https/animalbliss.com/xmlpl.php
  33. https/gogaurav.com/lkcvjw.php
  34. https/susansquires.com/2014-style2.php
  35. https/wfduino.com/pcwblt.php
  36.  
  37. animalbliss.com
  38. gogaurav.com
  39. susansquires.com
  40. wfduino.com
Add Comment
Please, Sign In to add comment