ExecuteMalware

2020-08-26 TA505 IOCs

Aug 26th, 2020
4,204
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.56 KB | None | 0 0
  1. Given that the same subject is used, these may be stragglers from yesterday.
  2.  
  3. THREAT ATTRIBUTION: TA505
  4.  
  5. SUBJECTS OBSERVED
  6. MONITORING REPORT
  7.  
  8. SENDERS OBSERVED
  9.  
  10. MALDOC FILE HASH
  11. None
  12.  
  13. PAYLOAD FILE HASH
  14. None
  15.  
  16. MALDOC LANDING PAGE URLS
  17. http://audio-pa-service.de/9xfxp.html
  18. http://vodoustoichivshperplat.com/1xiif.html
  19.  
  20. MALDOC DISTRIBUTION URLS
  21. https://filesharess.com/?d-297c5e5ae9ea4c5f
  22.  
  23. TA505 C2s
  24. box-cdn.com
  25. first-destin.com
  26.  
  27. SUPPORTING EVIDENCE
  28. https://twitter.com/stoerchl/status/1298539371927351298
Add Comment
Please, Sign In to add comment