Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- THREAT ATTRIBUTION: AGENT TESLA
- SUBJECTS OBSERVED
- INQ#6142
- SENDERS OBSERVED
- s.torniell@euroclone.it
- MALDOC FILE HASHES
- INQ#6142.xlsx
- 2509ee9a83185ce3ebdf14320c600860
- AGENT TESLA PAYLOAD URLS
- http://198.46.201.76/amina.exe
- AGENT TESLA PAYLOAD FILE HASHES
- amina.exe
- 75fbc199b4d1302a8c1c2e9c1de89b38
- Renames it to:
- vbc.exe
- 75fbc199b4d1302a8c1c2e9c1de89b38
- AGENT TESLA ESMTP DESTINATION
- 77.88.21.158:587
- smtp.yandex.ru
- SUPPORTING EVIDENCE
- https://urlhaus.abuse.ch/url/999477/
- https://app.any.run/tasks/45651804-b4bf-4426-9ea2-bd80008132e5/
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement