IoC Extractor

This IoC extractor identifies Indicators of Compromise (IoCs) by matching patterns, without analyzing the context of the surrounding text. Manual Review and Validation of the extracted IoCs are essential before any action is used.

Fake Purchase Order Used to Deliver Agent Tesla | FortiGuard Labs 

DATE : 2022-02-28T07:00:00
SOURCE : fortinet.com

CVE:
cve-2020-10786
cve-2020-10787

FILE_HASH_SHA256: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Domain:
mediafire.com
slot0.warongsoto.com
bitly.com
download2261.mediafire.com
warongsoto.com