Advertisement
MalwareMessiagh

JasperLoader/GootKit IOC

Sep 24th, 2019
14,511
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.10 KB | None | 0 0
  1. URL examples:
  2. ert.oilfieldwatermanagement[.]info/v2i.php?need=js&vid=pec11vbs&dyjd
  3. casa.emeraldsurfvision[.]com/api?zefat
  4. zzi.belltowers[.]ca/v2i.php?need=js&
  5. ema.emeraldsurfsciences[.]com/v2i.php?need=js&vid=pec10vbs&jsfaj
  6.  
  7. JasperLoader/Gootkit subdomains:
  8. vdd.c21breeden.com
  9. fad.c21abel.info
  10. vdd.c21paul.info
  11. itt.c21norma.info
  12. casa.emeraldsurfvision.com
  13. rew.c21jamie.info
  14. nono.littlebodiesbigsouls.com
  15. casa.bruceliu.com
  16. zzi.belltowers.ca
  17. ert.oilfieldwatermanagement.info
  18. ema.emeraldsurfsciences.com
  19. eme.emeraldsurfvision.com
  20. safa.205dundas.com
  21. zzi.aircargox.com
  22. sse.deescustomcreations.com
  23. sse.aircargox.com
  24. red.340airport.com
  25. tru.goodvibeskicking.com
  26. zzi.bellevilledc.com
  27.  
  28. Compromised domains:
  29. c21abel.info
  30. c21breeden.com
  31. c21jamie.info
  32. c21norma.info
  33. c21paul.info
  34. bruceliu.com
  35. emeraldsurfsciences.com
  36. emeraldsurfvision.com
  37. littlebodiesbigsouls.com
  38. oilfieldwatermanagement.info
  39. belltowers.ca
  40. 205dundas.com
  41. 340airport.com
  42. deescustomcreations.com
  43. goodvibeskicking.com
  44. aircargox.com
  45. aircargox.com
  46. bellevilledc.com
  47.  
  48. Malicious IPs:
  49. 185.158.248.110
  50. 185.158.249.122
  51. 185.189.149.252
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement