paladin316

Azorult_IOCs_2020-06-25_12_38.txt

Jun 25th, 2020
1,657
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.82 KB | None | 0 0
  1. #Azorult #malware #OSINT #IOC
  2.  
  3. SHA256:
  4. 52628c4b4699682d37fc177a2d3ddfbfda54e47f31a9350756da8e4432cf6053
  5.  
  6. IPs:
  7. 195[.]245[.]112[.]115
  8. 217[.]8[.]117[.]45
  9. 34[.]105[.]129[.]68
  10.  
  11. Domains:
  12. aaronthompson[.]ug
  13. telete[.]in
  14. zaragoza[.]ug
  15.  
  16. URL:
  17. http://195[.]245[.]112[.]115/index[.]php
  18. http://195[.]245[.]112[.]115/index[.]php,
  19. http://34[.]105[.]129[.]68/gate/libs[.]zip
  20. http://34[.]105[.]129[.]68/gate/log[.]php
  21. http://34[.]105[.]129[.]68/gate/sqlite3[.]dll
  22. http://aaronthompson[.]ug/index[.]php
  23. http://zaragoza[.]ug/
  24. http://zaragoza[.]ug/,
  25. http://zaragoza[.]ug/freebl3[.]dll
  26. http://zaragoza[.]ug/main[.]php
  27. http://zaragoza[.]ug/main[.]php,
  28. http://zaragoza[.]ug/mozglue[.]dll
  29. http://zaragoza[.]ug/msvcp140[.]dll
  30. http://zaragoza[.]ug/nss3[.]dll
  31. http://zaragoza[.]ug/softokn3[.]dll
  32. http://zaragoza[.]ug/sqlite3[.]dll
  33. http://zaragoza[.]ug/vcruntime140[.]dll
Add Comment
Please, Sign In to add comment