ExecuteMalware

2021-07-26 Snake Keylogger IOCs

Jul 26th, 2021 (edited)
11,033
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.91 KB | None | 0 0
  1. THREAT IDENTIFICATION: SNAKE KEYLOGGER
  2.  
  3. SUBJECTS OBSERVED
  4. INVITATION TO TENDER (β€œITT”) - PPCL-2021-0515-PKG4 FOR PROVISION OF PIPPING AND DRILLING SERVICES FOR KM250 DRILLING PROJECT
  5.  
  6. SENDERS OBSERVED
  7. ssuresh@crescent.ae
  8.  
  9. MALDOC FILE HASHES
  10. Appendix X- Project Quality Plan.tar
  11. 3f403ac38f0b4f4a2bbcb69a1bd09fe3
  12.  
  13. ITT - PPCL-2021-0515-PKG4 - pipping and drilling Services.tar
  14. 7a19557bba93c5e6f71004f4f59d2141
  15.  
  16. SNAKE KEYLOGGER PAYLOAD FILE HASHES
  17. ITT - PPCL-2021-0515-PKG4 - pipping and drilling Services.exe
  18. 61b4bf6034bd5cf307152a24c5b7af82
  19.  
  20. Appendix X- Project Quality Plan.exe
  21. 61b4bf6034bd5cf307152a24c5b7af82
  22.  
  23. SNAKE KEYLOGGER ESMTP DESTINATION
  24. us2.outbound.mailhostbox.com
  25. https://208.91.199.225:587
  26.  
  27. EXFILTRATION SENDER/RECIPIENT
  28. worshippersnake@fireacoustics.com
  29.  
  30. SUPPORTING EVIDENCE
  31. https://www.virustotal.com/gui/file/96057035299cb58a99ad12c355c6570264fa8b081d99f6b59ef18875cf0b3108/detection
Add Comment
Please, Sign In to add comment