Advertisement
Antelox

New Locky distribution sites - 22/06/2016

Jun 21st, 2016
1,536
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.11 KB | None | 0 0
  1. *Email sample*
  2.  
  3. _Subject_: Re:
  4.  
  5. _Body_:
  6.  
  7. Dear ...:
  8.  
  9. Please find attached our invoice for services rendered and additional disbursements in the above-
  10. mentioned matter.
  11.  
  12. Hoping the above to your satisfaction, we remain.
  13.  
  14. Sincerely,
  15. Doyle Alvarado
  16. Divisional Finance Director
  17.  
  18.  
  19. In attachment a zip archive with a javascript file. No difference from previous campaign [1] spotted.
  20.  
  21. Javascript sample - MD5: b83ef684529156e0bce902dc8da9c72e
  22. VT: 2/56 - https://virustotal.com/en/file/58854ba6819996ab0700f4ccb95ed7b8cc72ff57ac6b89f3d4c93ef6a6219d70/analysis/
  23.  
  24. *Compromised domains (47)*:
  25.  
  26. akdenizozalit.com/ ixoxi
  27. allchannel.net/ lue6c4
  28. aloprint.com/ bk0f2
  29. arabian-star.com/ nay7jq7
  30. beluxfurniture.com/ 0jcxx
  31. clerici.info/ g1sd5d59
  32. depaardestal.nl/ z5htsm
  33. ding-a-ling-tel.com/ bazk3kao
  34. easysupport.us/ fl85xie
  35. ekonova.nazwa.pl/ wc0coj
  36. ft.dol.za.pl/ ymsikgp7
  37. fuji-mig.com/ awcigpa1
  38. futuretech-iq.net/ koqpy
  39. handicraftmag.com/ mrihc
  40. heavenboundministry.com/ i7a59qj
  41. hrlpk.com/ s5ibqz1
  42. hyip-all.com/ 9qwmc65
  43. iminlife.com/ cqoanbzr
  44. infocuscreative.net/ didt48j
  45. innatesynergy.com/ mrgdve3
  46. jasoncoroy.com/ szlzqni
  47. kitchenconceptagra.com/ 5s9xb7j
  48. komplettraeder-24.de/ w61qx92
  49. marxforschung.de/ tt18a
  50. modelestrazackie.za.pl/ zfww8nx
  51. otolocphat.com/ bv2n241r
  52. passagegoldtravel.com/ bqugo3qb
  53. pawelbuczynski.za.pl/ z1q8u
  54. percorsipsicoarte.com/ 6gz707c
  55. pub-voiture.com/ dcsjrjm
  56. racedayworld.com/ 808k8pd
  57. reginamargherita96.net/ hhtvomcw
  58. rzezba-bierowiec.za.pl/ y7fbo1a
  59. samrhamburg.com/ jrh9b
  60. scpremiumbikes.com/ 3y1b0n4s
  61. searchforamy.com/ 1fz0k9kp
  62. stbb.pt/ z59ifwj
  63. stckwt.net/ p4jlk
  64. testfacility.awsome.pl/ zc73v
  65. totalsportnetwork.com/ kpbrp2mq
  66. ugmp.nazwa.pl/ xkhhf2n
  67. unitedprogamers.za.pl/ ylxt67
  68. vantagenetsvc.com/ a7xssz
  69. vinabuhmwoo.com/ 69udv
  70. wasearch.us/ 6mm3hk
  71. wbksis.com/ 5mxl28il
  72. yourworshipspace.com/ a3py3w
  73.  
  74. *Sampled downloaded and decoded*:
  75.  
  76. File Name: 1pqsLqX45.exe
  77. MD5: 0bf7315a2378d6b051568b59a7a0195a
  78. VT 7/55 - https://virustotal.com/en/file/653fb7c2c76c68d7a71307863f5025ee0f28faf850ca91e1581e3746695ecd55/analysis/
  79.  
  80. [1]: https://reaqta.com/2016/05/locky-ransomware-new-loader/
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement