PULSE NAME
Destover Sony Pictures Compromise Dropper
WHITE AlienVault 2015-04-19 Modified: 2017-08-24
5
IOCs
LOW VOLUME
Destructive malware used by unknown computer network exploitation (CNE) operators has been identified. This malware has the capability to overwrite a victim host's master boot record (MBR) and all data files. The overwriting of the data files will make it extremley difficult and costly, if not impossible, to recover the data using standard forensic methods. Analysis of this malware is presented to provide the computer network defense (CND) community with indicators of this malware. Imported from IOCBucket
Indicators of Compromise (5)
All FileHash-MD5
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 d1c27ee7ce18675974edf42d4eea25c6 2017-08-24
FileHash-MD5 289c9624337b700a77b4807ce93af613 2017-08-24
FileHash-MD5 4d938f4a5b3bafb84cbd447fc3dccacb 2017-08-24
FileHash-MD5 6788313a762c211dcb0de421607e6057 2017-08-24
FileHash-MD5 3a25847848c62c4f2dca67d073a524ae 2017-08-24