ExecuteMalware

2021-08-05 Agent Tesla 2 IOCs

Aug 5th, 2021
14,867
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.51 KB | None | 0 0
  1. THREAT IDENTIFICATION: AGENT TESLA
  2.  
  3. SUBJECTS OBSERVED
  4. PO# NS504586-D
  5.  
  6. SENDERS OBSERVED
  7.  
  8. MALDOC FILE HASHES
  9. NS504586.rar
  10. 455f145b686e3e6ca405595e911732a8
  11.  
  12. AGENT TESLA PAYLOAD FILE HASHES
  13. NS504586.exe
  14. b45af164c33784cfd1968a9784ad574b
  15.  
  16. Renamed to:
  17.  
  18. daGruN.exe
  19. b45af164c33784cfd1968a9784ad574b
  20.  
  21. AGENT TESLA ESMTP DESTINATION
  22. p3plsmtpa07-03.prod.phx3.secureserver.net
  23. 217.138.213.237
  24.  
  25. EXFILTRATION INFORMATION
  26.  
  27.  
  28.  
Advertisement
Add Comment
Please, Sign In to add comment