Advertisement
MalwareQuinn

Qakbot_06_18_2020

Jun 18th, 2020
11,707
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.35 KB | None | 0 0
  1. Qakbot spun up spx143 zips around 11:34 UTC. EXEs were released an hour later at 12:34 UTC.
  2.  
  3. VBS Name: MANQRETS_5357842713356.vbs
  4.  
  5. URLs:
  6. http://alergeny.dietapacjenta.pl/pgaakzs/88888888.png
  7. http://st29.ru/tbzirttmcnmb/88888888.png
  8. http://restaurantbrighton.ru/uyqcb/88888888.png
  9. http://royalapartments.pl/vtjwwoqxaix/88888888.png
  10. http://egyorg.com/vxvipjfembb/88888888.png
  11.  
  12. IPs:
  13. 39.36.254.179:995
  14. 24.139.132.70:443
  15. 24.202.42.48:2222
  16. 72.204.242.138:443
  17. 172.242.156.50:995
  18. 72.204.242.138:20
  19. 68.174.15.223:443
  20. 74.193.197.246:443
  21. 96.56.237.174:990
  22. 64.19.74.29:995
  23. 70.168.130.172:443
  24. 189.236.166.167:443
  25. 68.4.137.211:443
  26. 76.187.8.160:443
  27. 76.86.57.179:2222
  28. 73.226.220.56:443
  29. 67.250.184.157:443
  30. 75.183.171.155:3389
  31. 173.172.205.216:443
  32. 173.3.132.17:995
  33. 172.78.30.215:443
  34. 207.255.161.8:32103
  35. 75.137.239.211:443
  36. 68.49.120.179:443
  37. 206.51.202.106:50003
  38. 82.127.193.151:2222
  39. 207.255.161.8:2222
  40. 207.255.161.8:2087
  41. 24.152.219.253:995
  42. 187.19.151.218:995
  43. 197.37.48.37:993
  44. 188.241.243.175:443
  45. 72.88.119.131:443
  46. 89.137.211.239:443
  47. 108.30.125.94:443
  48. 187.163.101.137:995
  49. 100.19.7.242:443
  50. 45.77.164.175:443
  51. 80.240.26.178:443
  52. 66.208.105.6:443
  53. 207.246.75.201:443
  54. 199.247.22.145:443
  55. 199.247.16.80:443
  56. 95.77.223.148:443
  57. 68.60.221.169:465
  58. 5.107.220.84:2222
  59. 41.228.212.22:443
  60. 86.233.4.153:2222
  61. 68.200.23.189:443
  62. 201.146.127.158:443
  63. 79.114.199.39:443
  64. 87.65.204.240:995
  65. 71.74.12.34:443
  66. 217.162.149.212:443
  67. 195.162.106.93:2222
  68. 75.165.112.82:50002
  69. 201.248.102.4:2078
  70. 96.41.93.96:443
  71. 89.247.216.127:443
  72. 84.232.238.30:443
  73. 103.238.231.40:443
  74. 174.34.67.106:2222
  75. 98.115.138.61:443
  76. 91.125.21.16:2222
  77. 84.247.55.190:443
  78. 193.248.44.2:2222
  79. 74.135.37.79:443
  80. 78.96.190.54:443
  81. 86.126.97.183:2222
  82. 2.50.47.97:2222
  83. 68.39.160.40:443
  84. 96.232.203.15:443
  85. 86.144.150.29:2222
  86. 71.220.191.200:443
  87. 24.231.54.185:2222
  88. 80.14.209.42:2222
  89. 24.164.79.147:443
  90. 70.183.127.6:995
  91. 47.153.115.154:993
  92. 184.180.157.203:2222
  93. 50.104.68.223:443
  94. 67.165.206.193:995
  95. 200.113.201.83:993
  96. 47.153.115.154:465
  97. 24.42.14.241:995
  98. 189.160.203.110:443
  99. 188.27.76.139:443
  100. 207.255.161.8:32102
  101. 49.207.105.25:443
  102. 71.210.177.4:443
  103. 117.242.253.163:443
  104. 50.244.112.106:443
  105. 69.92.54.95:995
  106. 41.34.91.90:995
  107. 72.204.242.138:53
  108. 41.97.138.74:443
  109. 72.29.181.77:2078
  110. 71.88.168.176:443
  111. 2.50.171.142:443
  112. 67.83.54.76:2222
  113. 86.125.145.90:2222
  114. 47.153.115.154:995
  115. 24.122.157.93:443
  116. 47.146.169.85:443
  117. 72.181.9.163:443
  118. 187.155.74.5:443
  119. 71.209.187.4:443
  120. 74.75.216.202:443
  121. 24.44.180.236:2222
  122. 24.43.22.220:993
  123. 108.188.116.179:443
  124. 100.4.173.223:443
  125. 76.170.77.99:443
  126. 70.95.118.217:443
  127. 134.0.196.46:995
  128. 68.225.56.31:443
  129. 72.204.242.138:32102
  130. 72.204.242.138:50001
  131. 108.190.151.108:2222
  132. 72.204.242.138:465
  133. 50.244.112.10:443
  134. 173.22.120.11:2222
  135. 24.43.22.220:995
  136. 24.43.22.220:443
  137. 92.17.167.87:2222
  138. 72.209.191.27:443
  139. 72.204.242.138:80
  140. 72.204.242.138:443
  141. 71.187.170.235:443
  142. 96.56.237.174:32103
  143. 71.187.7.239:443
  144. 184.98.104.7:995
  145. 70.124.29.226:443
  146. 137.99.224.198:443
  147. 73.23.194.75:443
  148. 151.205.102.42:443
  149. 64.224.76.152:443
  150. 72.204.242.138:32100
  151. 173.187.101.221:443
  152. 72.179.13.59:443
  153. 208.93.202.49:443
  154. 70.174.3.241:443
  155. 96.37.137.42:443
  156. 76.111.128.194:443
  157. 67.209.195.198:3389
  158. 61.3.184.27:443
  159. 24.42.14.241:443
  160. 74.56.167.31:443
  161. 5.193.61.212:2222
  162. 117.216.177.171:443
  163.  
  164.  
  165. Sandbox: https://www.hybrid-analysis.com/sample/004cf41f690adc139709638aa22f36f079acd9808831b3617fe3739efca4c69d/5eeb701287b09a25391df19d
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement