Advertisement
MalwareBreakdown

07/02/2020: ZLoader Campaign IOCs

Jul 2nd, 2020
12,741
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.66 KB | None | 0 0
  1. https://twitter.com/DynamicAnalysis/status/1278721716106207233
  2.  
  3. #ZLoader #malspam with .xls attachment for today.
  4.  
  5. #ZLoader downloader URLs:
  6. https://Celadon-Emerald.mockienan.com/wp-keys.php
  7. https://macx.work/wp-keys.php
  8. https://maifoxfiraverpclean.gq/wp-keys.php
  9. https://smartdev.infinitytechsol.com/wp-keys.php
  10.  
  11. #ZLoader C2s:
  12. https://tedxminna.com/wp-parsing.php
  13. https://roeslidegeralic.gq/wp-parsing.php
  14. https://marufait.com/wp-parsing.php
  15. https://blackandprecious.com/wp-parsing.php
  16. https://resources.digilentinc.com/wp-parsing.php
  17. https://phywebtmoonsthevil.gq/wp-parsing.php
  18. https://ews.asia/wp-parsing.php
  19. https://ews1.icu/wp-parsing.php
  20.  
  21. XLS sample:
  22. https://app.any.run/tasks/549c8728-1300-403e-9ad4-fce3c40c383e/
  23.  
  24. DLL sample uploaded by @JAMESWT_MHT:
  25. https://bazaar.abuse.ch/sample/3dd800b875aa0ef2fa0923babdd4b162555a1c3ff3c58e9291d45fff82389816
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement