diff --git a/iocs/filename-iocs.txt b/iocs/filename-iocs.txt index c02c9bb1..0bcf1ade 100644 --- a/iocs/filename-iocs.txt +++ b/iocs/filename-iocs.txt @@ -4560,6 +4560,13 @@ C:\\perflogs\\RunSchedulerTaskOnce\.ps1;85 \\AppData\\Roaming\\Adobe\\Scripts\\script\.exe;75 \\libtcc\.dll;60 +# CopyFail IOCs https://copy.fail/ +/copy_fail_exp\.py;85 +/home/[^/]{1,20}/exp$;75 + +# DirtyFrag https://github.com/V4bel/dirtyfrag/ +/dirtyfrag/exp;80 + # DAEMON Tools Lite supplychain comrpomise https://securelist.com/tr/daemon-tools-backdoor/119654/ C:\\Temp\\crypto\.dll;85 C:\\Windows\\Temp\\envchk\.exe;85