ExecuteMalware

2021-03-22 IcedID IOCs

Mar 22nd, 2021
4,456
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.68 KB | None | 0 0
  1. THREAT IDENTIFICATION: ICEDID
  2.  
  3. SUBJECTS OBSERVED
  4. Re: Reset Password
  5.  
  6. SENDERS OBSERVED
  7.  
  8. MALDOC FILE HASHES
  9. catalogue (39).zip
  10. 02c59abccae9111eecb8d4b07320a1f2
  11.  
  12. document-1992284186.xlsm
  13. 7f466e4a9bd2dccb435221e80a098b26
  14.  
  15. PAYLOAD DOWNLOAD URLS
  16. http://rcwj22jxyvt03swnlt.xyz/grays.gif
  17.  
  18. grays.gif
  19. 22f52089fd030b5f2c096631a61d5e01
  20.  
  21. This is a 64-bit .dll file
  22.  
  23. ICEDID C2s
  24. http://lightopridum2.website
  25.  
  26. SUPPORTING EVIDENCE
  27. https://app.any.run/tasks/3e106ce4-b362-4b6d-97b4-ed417e2d30b4/
  28. https://tria.ge/210322-gm2a3h9emn
  29. https://www.virustotal.com/gui/file/7b0290fdb87e425a869defb681c5fbbed330a000c0cdb6e8c9c52b0e8b1b5492/detection
  30.  
Advertisement
Add Comment
Please, Sign In to add comment