MalwareMustDie's Pastebin

Malware Crusade Battlefield - Near C2    69,527 209,899 4 years ago
Name / Title Added Expires Hits Syntax  
Grey stuff: TDS Used Landing Page JS Code Feb 23rd, 14 Never 331 JavaScript -
Page replacement..hard way to inject.. Feb 22nd, 14 Never 313 Java -
Iframer JS Injection Feb 22nd, 14 Never 404 JavaScript -
CookieBomb pad Feb 22nd, 14 Never 360 JavaScript -
And another Perl DDoS Shell Bot Feb 21st, 14 Never 822 Perl -
PerlBot Remote Downloader Feb 21st, 14 Never 435 Perl -
Another PerlBot Shell Feb 21st, 14 Never 550 Perl -
CookieBomb v2 - First Cushion Cookie Flow Step by ... Feb 20th, 14 Never 611 Java -
Kuluoz Reversing "QUICK" Notes Feb 14th, 14 Never 442 ASM (NASM) -
Hacked Site with the US IRC Server'S Perl ShellBot Feb 12th, 14 Never 707 Perl -
#MalwareMustDie - Decoding Kelihos Simda download ... Feb 10th, 14 Never 683 JavaScript -
Have a "xmlrpc.php" & GooDork for Br... Feb 6th, 14 Never 562 XML -
Phishing AMEX Script (neutralized) Feb 5th, 14 Never 564 JavaScript -
Codes and Decodes: Cracks of the Traffer and Malve... Feb 1st, 14 Never 317 JavaScript -
Blah!! New ESD.php Server Side Infector Logic Jan 31st, 14 Never 523 JavaScript -
CookieBomb v2 | the 2nd cushion: Google.JS Jan 29th, 14 Never 392 JavaScript -
A wtf suspicious TDS.. Jan 27th, 14 Never 514 None -
CookieBomb Case Jan 2014 Jan 22nd, 14 Never 567 JavaScript -
Forensics Data - PowerLocker $str(MemDumps) Jan 17th, 14 Never 373 None -
#Nuclear EK infection domain chains.. Jan 16th, 14 Never 310 None -
#Simda Payload callbacks Traffic (origin: Kelihos ... Jan 16th, 14 Never 264 None -
#Cridex Trojan Infection IP Source per Jan 17 2014 Jan 16th, 14 Never 539 None -
Trojan/PWS Win32/Cridex RETURNS Jan 15th, 14 Never 540 None -
FUD Kelihos Jan 14th, 14 Never 257 None -
Kuluoz - Latest Version | Binary DUMP Analysis Jan 14th, 14 Never 470 None -
#MMD Crime Investigation 20140108-001 Jan 8th, 14 Never 645 mIRC -
qqq.inc.php PHP Hacks aimed DDoS & Windows Rem... Jan 5th, 14 Never 559 PHP -
Shadow Logger Registry Trace in Memory Dump (foren... Jan 2nd, 14 Never 603 None -
Shadow Logger Process Record Jan 2nd, 14 Never 316 None -
Shadow Logger PE Strings Jan 2nd, 14 Never 553 None -
#MMD Tango Down 311/2,989 Dec 2nd, 13 Never 385 None -
Analysis of the suspected Linux DDoS backdoor Tool Nov 14th, 13 Never 1,647 None -
SURBL CryptoLocker Nov 13th, 13 Never 430 None -
BOTNET KULUOZ/ ASPROX BACK WITH NEW EXCYPTION Nov 12th, 13 Never 370 None -
Injection Code to .PL Redirected Spam sites.. Nov 11th, 13 Never 393 JavaScript -
Nuclear EK Landing Page in Japan serves Citadel Nov 8th, 13 Never 205 JavaScript -
FaceBook IM & Web Driven Facebook Trojan with ... Nov 7th, 13 Never 446 JavaScript -
#MalwareMustDie - Abandoned infected site w/ Aband... Nov 6th, 13 Never 402 JavaScript -
#MalwareMustDie - MORE Zbot Trojans UP and ALIVE Nov 5th, 13 Never 274 None -
#MalwareMustDie! ZEUS links that needed to nuke down: Nov 5th, 13 Never 280 None -
#MalwareMustDie - #PoC of HOW Kelihos Infecting vi... Nov 5th, 13 Never 254 None -
#MalwareMustDie! Zombie PCs used by Botnet & M... Nov 4th, 13 Never 316 None -
The cracking of 709days used by RunForrestRun DGA Nov 2nd, 13 Never 302 JavaScript -
DGA (PseudoRandom Domain) RunForrestRun, Decoding ... Nov 2nd, 13 Never 295 JavaScript -
#MalwareMustDie! Zeus Variant Payloads Oct 30th, 13 Never 310 None -
#malwareMustDie - The #w00tw00t Attack log Oct 20th, 13 Never 585 Apache Log -
YAra rule: Citadel Oct 15th, 13 Never 367 None -
#ESD.PHP REDIRECTOR UNLEASHED | Server Side's Code Oct 5th, 13 Never 894 PHP -
#MalwareMustDie! Peeking at Recent Blackhole via I... Sep 19th, 13 Never 328 None -
#MalwareMustDie! Black Proxies Bad Guys Using Sep 3rd, 13 Never 4,727 None -
KELIHOS MALWARE DETECTION RATIO - BY AV SCANNING A... Aug 31st, 13 Never 357 None -
Kelihos TODAY's IP - In Detail Version: 2,189 Aug 15th, 13 Never 504 None -
I found these.. Aug 13th, 13 Never 328 None -
OP CleanUp Kelihos, CN: Polandia/Polska Aug 13th, 13 Never 283 None -
OP CleanUp Kelihos, CN: Japan Aug 13th, 13 Never 269 None -
OP CleanUp Kelihos, CN: Romania Aug 13th, 13 Never 280 None -
OP CleanUp Kelihos, CN: Russia Aug 13th, 13 Never 314 None -
OP CleanUp Kelihos, CN: USA Aug 13th, 13 Never 215 None -
OP CleanUp Kelihos, CN: India Aug 13th, 13 Never 148 None -
#MalwareMustDie - Kelihos Botnet IP Aug 11, 2013 t... Aug 11th, 13 Never 673 None -
#MalwareMustDie - Kelihos Botnet IP AUg 11, 2013 Aug 11th, 13 Never 196 None -
#MalwareMustDie! Kelihos BotNet IP TOTAL Aug 10th ... Aug 10th, 13 Never 1,117 None -
Chekcing Latest Kelihos .COM domains sinkhole status Aug 10th, 13 Never 294 None -
#MalwareMustDie! Last milking today, sorted unique... Aug 10th, 13 Never 160 None -
MalwareMustDie! Kelihos BotNet IPs #3 | Aug 10th 2013 Aug 9th, 13 Never 405 None -
Kelihos Hit US IP.. Aug 9th, 13 Never 202 None -
#MalwareMustDie! Kelihos BotNet IP-2 Aug 10th 2013 Aug 9th, 13 Never 567 None -
#MalwareMustDie - Log of Report of ANOTHER 2 Kelih... Aug 9th, 13 Never 100 None -
#MalwareMustDie - Log of Report of 2 more Kelihos ... Aug 9th, 13 Never 157 None -
#MalwareMustDie! Kelihos BotNet IP Aug 10th 2013 Aug 9th, 13 Never 472 None -
#MalwareMustDie - Log of Report of 8 more Kelihos ... Aug 9th, 13 Never 240 None -
#MalwareMustDie - NEW KELIHOS DOMAIN: OFCIWOX.COM Aug 9th, 13 Never 157 None -
New Kelihos IP milked from new domain: OFCIWOX.COM Aug 9th, 13 Never 339 None -
#MalwareMustDie! Kelihos IP Address for CLEAN-UPS Aug 8th, 13 Never 234 None -
#MalwareMustDie! 623 Kelihos IP Address for CLEAN-UPS Aug 8th, 13 Never 111 None -
DAVUJUZ.COM DNS CACHE CHECKS Aug 7th, 13 Never 115 None -
#MalwareMustDie! Monitoring INTERNET.BS base Kelih... Aug 6th, 13 Never 399 None -
#MalwareMustDie! Kelihos Affiliated .COM Payload D... Aug 6th, 13 Never 97 None -
#MalwareMustDie - UPDATE: Tango status of RunForre... Aug 6th, 13 Never 142 PHP -
#MawareMustDie Kelihos IP Milked in UNIX Aug 5th, 13 Never 150 None -
#MalwareMustDie- #Kelihos .RU domains Status Today Aug 5th, 13 Never 148 None -
#MalwareMustDie! #Kelihos NS Spreader Aug 5th, 13 Never 91 None -
#MMD #UPDATE: Additional Kelihos Payload URL 100 d... Aug 2nd, 13 Never 320 PHP -
#malwareMustDie! Credential slurp by trojan/PWS/ F... Aug 2nd, 13 Never 243 None -
#MalwareMustDie! REproduction redirector to Glazuk... Aug 1st, 13 Never 277 HTML -
#MalwareMustDie! FINAL Hexed decoded redirector to... Aug 1st, 13 Never 220 PHP -
#MalwareMustDie! Hexed DEcodeD code to Glazukov EK Aug 1st, 13 Never 208 PHP -
#MalwareMustDie! Hexed code of injection code to G... Aug 1st, 13 Never 138 None -
#MalwareMustDie! The POC lsit of ALIVE Zbot Jul 30th, 13 Never 592 None -
#MalwareMustDie! New form of Neutrino EK landing p... Jul 26th, 13 Never 409 JavaScript -
Exploit Kit JNLP Calls + Cookie Check + Java ver. ... Jul 26th, 13 Never 195 None -
Suspected Kelihos ALive domain IP Addresses (Addit... Jul 25th, 13 Never 210 None -
#MalwareMustDie! The Come Back of RunForrestRun .RU Jul 23rd, 13 Never 1,182 None -
#MalwareMustDie! #ALERT: Kelihos IP & Domains ... Jul 19th, 13 Never 215 None -
#MalwareMustDie! Kelihos payload URL via RedKit EK Jul 16th, 13 Never 177 None -
*.MSI.COM got hacked, redirected to TDS to EK Jul 15th, 13 Never 218 None -
#MalwareMustDie! #RedKit Infection Campaign /[a-z]... Jul 13th, 13 Never 138 None -
#MalwareMustDie! ZERODAY of EXPLOIT KIT & EVIL... Jul 11th, 13 Never 632 None -
Today's Pony/zbot GO Jul 11th, 13 Never 163 None -
#MalwareMustDie! Kuluoz CnC list Jul 8th, 13 Never 476 None -
Top