ExecuteMalware

2021-03-09 Agent Tesla IOCs

Mar 10th, 2021
4,781
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.66 KB | None | 0 0
  1. THREAT IDENTIFICATION: AGENT TESLA
  2.  
  3. SUBJECTS OBSERVED
  4. Re: DEVOLUCIÓN DE PAGO TT (Ref 0180066743)
  5.  
  6. SENDERS OBSERVED
  7.  
  8. MALDOC FILE HASHES
  9. Detalles del banco..PDF.....gz
  10. 1c82a6fd738178598e8a3c207846c6a0
  11.  
  12. Devolver detalles de Swift..PDF.......gz
  13. 562ca9d4bc237708fd23849fd3600e25
  14.  
  15. AGENT TESLA PAYLOAD FILE HASHES
  16. WcF3F786rumYVOl.exe
  17. a5e4ad305745815c85521f1bec3db622
  18.  
  19. QqxOrD9ivjVteg7.exe
  20. daa19bf920ef774e7bc435c8ae7e5567
  21.  
  22. AGENT TESLA ESMTP DESTINATION
  23. https://66.70.204.222:587
  24. mail.iymorenterprizelogs.com
  25.  
  26. SUPPORTING EVIDENCE
  27. https://tria.ge/210309-k9van3gy8a
  28. https://app.any.run/tasks/75bbb948-6edf-47de-a4e5-f3d17f855bb6/
Advertisement
Add Comment
Please, Sign In to add comment