Advertisement
ExecuteMalware

2020-11-10 KeyBase IOCs

Nov 10th, 2020
4,285
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.66 KB | None | 0 0
  1. THREAT ATTRIBUTION: KEYBASE KEYLOGGER
  2. (Attribution is not 100% certain)
  3.  
  4. SUBJECTS OBSERVED
  5. Invoice
  6.  
  7. SENDERS OBSERVED
  8. i.garmash@phc.org.ua
  9.  
  10. MALDOC FILE HASHES
  11. Invoice.xls
  12. e6958b4fa1ed6a4bc6cc1438b8e68cfe
  13.  
  14. PAYLOAD DOWNLOAD URLS
  15. https://cutt.ly/7gCl9lW
  16. https://cape-eye.co.za/Iv3.exe
  17.  
  18. PAYLOAD FILE HASHES
  19. Iv3.exe
  20. c55700728fbd6d7d1e9f1c1420c48530
  21.  
  22. ADDITIONAL PAYLOAD FILE HASHES
  23. Important.exe
  24. adf76f395d5a0ecbbf005390b73c3fd2
  25. (VT=0/72)
  26.  
  27. KEYBASE C2
  28. http://shopphongtinh.com/keybase/image/upload.php
  29.  
  30. SUPPORTING EVIDENCE
  31. https://app.any.run/tasks/65c075cc-9b98-4fc8-98c8-e71c40d0353d/
  32. https://urlhaus.abuse.ch/browse.php?search=shopphongtinh.com
  33.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement