Advertisement
James_inthe_box

September Malspam Campaigns

Oct 1st, 2019
1,300
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.63 KB | None | 0 0
  1. Date,Summary ,Details,Category,Sub Category,Email Payload Type,Users Targeted
  2. 9/2/2019,Malicious email campaign; morning,"""FW: new order & outstanding payment slip copy""; rar -> agenttesla",Email,Malware,Attachment,3
  3. 9/3/2018,Malicious email campaign; morning,"""Quote|Quotation""; rar -> agenttesla",Email,Malware,Attachment,4
  4. 9/3/2019,Malicious email campaign; morning,"All subjects have a first and last name starting with the same letter or ""Payment"" and small doc; -> dridex continued to 9/4",Email,Malware,Attachment,12
  5. 9/3/2019,Malicious email campaign; morning,"""Purchase Order""; xlsx -> agenttesla continued into 9/4",Email,Malware,Attachment,23
  6. 9/4/2019,Malicious email campaign; morning,"All subjects contain ""D'Andrea""; zip -> dreambot",Email,Malware,Attachment,3
  7. 9/4/2019,Malicious email campaign; morning,"""PO-57119""; rar -> agenttesla",Email,Malware,Attachment,4
  8. 9/5/2019,Malicious email campaign; morning,All subjects contain shipping or order; ace -> lokibot,Email,Malware,Attachment,2
  9. 9/6/2019,Malicious email campaign; morning,Various spoofed responses; password'd zip -> ursnif,Email,Malware,Attachment,2
  10. 9/6/2019,Malicious email campaign; evening,"""EFT Notification - ACH Credits - Ref:190906""; zip -> ps1 -> remcos rat",Email,Malware,Attachment,2
  11. 9/9/2019,Malicious email campaign; morning,Various spoofed responses; password'd zip -> ursnif,Email,Malware,Attachment,3
  12. 9/9/2019,Malicious email campaign; morning,"""Quotation for SC/APC - SC/APC Patch Cord (5 mtrs)""; rar and zip -> remcos and agenttesla",Email,Malware,Attachment,2
  13. 9/9/2019,Malicious email campaign; morning,"""RE:Reconfirm Inquiry""",Email,Malware,Attachment,6
  14. 9/9/2019,Malicious email campaign; evening,"""Ref: Payment for the Above invoice""; zip -> hawkeye keylogger",Email,Malware,Attachment,3
  15. 9/10/2019,Malicious email campaign; morning,"""Re: ARRIVAL NOTICE --- B/L NO: 4860894""; 2 rar -> ",Email,Malware,Attachment,4
  16. 9/10/2019,Malicious email campaign; morning,"""DHL NOTIFICATION""; iso -> remcos rat",Email,Malware,Attachment,2
  17. 9/11/2019,Malicious email campaign; morning,"""RE: CONFIRM BANK ACCOUNT(OUTSTANDING PAYMENT)""; zip -> lokibot",Email,Malware,Attachment,2
  18. 9/11/2019,Malicious email campaign; morning,All subjects have a first and last name starting with the same letter; doc -> dridex,Email,Malware,Attachment,7
  19. 9/11/2019,Malicious email campaign; evening,"""Re: Next Order plan""; iso -> agenttesla",Email,Malware,Attachment,2
  20. 9/11/2019,Malicious email campaign; evening,"""Confirmation DHL Express Courier collection AME190606043521""; rar -> agenttesla",Email,Malware,Attachment,2
  21. 9/13/2019,Malicious email campaign; morning,"""APPROVED PURCHASE ORDER- 2 X 40 fcl SEPT./OCT"" rar ->",Email,Malware,Attachment,2
  22. 9/13/2019,Malicious email campaign; evening,"""Re: Document for PI - AWIL2019 02 288 ( B )""; zip -> hawkeye keylogger",Email,Malware,Attachment,3
  23. 9/16/2019,Malicious email campaign; morning,Various spoofed responses; doc -> emotet,Email,Malware,Attachment,5
  24. 9/16/2019,Malicious email campaign; morning,"All subejcts contain ""Transaction for""; docm -> ostap -> trickbot",Email,Malware,Attachment,2
  25. 9/16/2019,Malicious email campaign; evening,"""FW:PAYMENTS ADVICE""; xlsx -> formbook",Email,Malware,Attachment,11
  26. 9/16/2019,Malicious email campaign; evening,"""Payment Advice Note from 13.09.2019""; xlam -> agenttesla",Email,Malware,Attachment,3
  27. 9/17/2019,Malicious email campaign; morning,"""ACH Payment Advice - 160919""; zip -> ps1 -> remcos rat",Email,Malware,Attachment,2
  28. 9/17/2019,Malicious email campaign; evening,"""RE:Reconfirm Inquiry""; doc -> remcos rat",Email,Malware,Attachment,28
  29. 9/17/2019,Malicious email campaign; evening,"""RE: 21593740 Aug""; rar -> formbook",Email,Malware,Attachment,4
  30. 9/17/2019,Malicious email campaign; evening,"""MT Sea Holly / Calling Seria for loading - PDA's Request""; rar -> lokibot",Email,Malware,Attachment,6
  31. 9/18/2019,Malicious email campaign; evening,"""ACH Remittance Notification - 170919""; link -> ps1 -> remcos rat",Email,Malware,Attachment,2
  32. 9/18/2019,Malicious email campaign; evening,"""Re: RE: shipping document ( invoice , packing list )""; img -> hawkeye keylogger",Email,Malware,Attachment,60
  33. 9/18/2019,Malicious email campaign; morning,"""INVOICES""; xls -> ta505 group -> flawedammyy",Email,Malware,Attachment,3
  34. 9/30/2019,Malicious email campaign; morning,"All subjects contain ""New_Invoice_<digits>""; zip -> docx -> trickbot",Email,Malware,Attachment,3
  35. 9/30/2019,Malicious email campaign; morning,"""Transaction Receipt #0014 30-09-2019""; zip -> nanocore",Email,Malware,Attachment,4
  36. 9/30/2019,Malicious email campaign; morning,"""Inquiry of 2x40FT HC Super Heavy""; rar -.",Email,Malware,Attachment,4
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement