2021-08-10 (TUESDAY) - PCAP AND MALWARE FOR ISC DIARY (TA551 -> BAZARLOADER -> COBALT STRIKE)
NOTICE:
- The zip archives on this page have been updated, and they now use the new password scheme. For the new password, see the "about" page of this website.
NOTES:
- The associated ISC diary is TA551 (Shathak) continues pushing BazarLoader, infections lead to Cobalt Strike
ASSOCIATED FILES:
- 2021-08-10-TA551-BazarLoader-CobaltStrike-IOCs.txt.zip 6.1 kB (6,085 bytes)
- 2021-08-10-TA551-BazarLoader-CobaltStrike-IOCs.txt (9,857 bytes)
- 2021-08-10-TA551-BazarLoader-to-Cobalt-Strike.pcap.zip 1.3 MB (1,289,144 bytes)
- 2021-08-10-TA551-BazarLoader-to-Cobalt-Strike.pcap (1,927,678 bytes)
- 2021-08-10-app.any.run-Cobalt-Strike-sandbox-traffic-sanitized.zip 400 kB (400,236 bytes)
- 2021-08-10-app.any.run-Cobalt-Strike-sandbox-analysis-santized.pcap (530,167 bytes)
- SSLKeysLogFile.txt (7,392 bytes)
- 2021-08-10-TA551-BazarLoader-with-CobaltStrike-malware-samples.zip 2.1 MB (2,063,230 bytes)
- 382D.dll (24,064 bytes)
- Extracted-docs/bid,08.21.doc (84,998 bytes)
- Extracted-docs/docs,08.010.2021.doc (85,084 bytes)
- Extracted-docs/instruct 08.21.doc (85,393 bytes)
- Extracted-docs/legal paper-08.21.doc (88,693 bytes)
- Extracted-docs/material-08.21.doc (84,361 bytes)
- Extracted-docs/official paper-08.21.doc (85,348 bytes)
- Extracted-docs/report.08.21.doc (88,748 bytes)
- Extracted-docs/rule 08.010.2021.doc (90,345 bytes)
- Extracted-docs/specifics.08.21.doc (89,976 bytes)
- Extracted-docs/statistics_08.21.doc (85,092 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-01.txt (3,260 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-02.txt (3,256 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-03.txt (3,253 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-04.txt (3,531 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-05.txt (3,233 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-06.txt (3,057 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-07.txt (3,219 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-08.txt (3,170 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-09.txt (3,199 bytes)
- HTA-and-DLL-files/2021-08-10-TA551-HTA-file-example-10.txt (3,470 bytes)
- HTA-and-DLL-files/installSetupStart.jpg (295,552 bytes)
- HTA-and-DLL-files/installVideo.jpg (295,552 bytes)
- HTA-and-DLL-files/mp3Mp4.jpg (960,134 bytes)
- HTA-and-DLL-files/mp4WavBefore.jpg (295,552 bytes)
- HTA-and-DLL-files/playInstall.jpg (295,552 bytes)
- HTA-and-DLL-files/startMix.jpg (295,552 bytes)
- HTA-and-DLL-files/stopPlay.jpg (295,552 bytes)
- HTA-and-DLL-files/stopStopDate.jpg (295,552 bytes)
- HTA-and-DLL-files/videoInstall.jpg (295,552 bytes)
- HTA-and-DLL-files/videoStopVideo.jpg (295,552 bytes)
Click here to return to the main page.