tkanalyst

2019/09/15 Grandsoft EK -> Ramnit

Sep 15th, 2019
954
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.78 KB | None | 0 0
  1. https://app.any.run/tasks/c5bb30dc-9652-4be8-9092-5dfedce0b830
  2.  
  3. Main object- "kajojrpk.exe"
  4. sha256 4a6690977d62df2b1cbfa0373a74bfa7fd172869c1bc3b0629fc88c5949ff716
  5. sha1 4c6b5f1d8ec996db105e6704da30372b2fc8c229
  6. md5 c06162927d45c60df01ea1e9b8e0cb57
  7. Dropped executable file
  8. sha256 C:\Users\admin\AppData\Local\Temp\sfseunjd.exe 4a6690977d62df2b1cbfa0373a74bfa7fd172869c1bc3b0629fc88c5949ff716
  9. DNS requests
  10. domain firstlabelserverlive.com
  11. domain duiqemfxnwcvndtoq.com
  12. domain cuavseaacct.com
  13. domain ghjwekbefv.com
  14. domain cpmwpsxxmynexku.com
  15. domain ukonybmfw.com
  16. domain unihohlwu.com
  17. domain bqqrkwecdj.com
  18. domain jcnugotxkxysvhgjf.com
  19. domain llgsjyvsyegoufu.com
  20. domain mgpcuaph.com
  21. Connections
  22. ip 31.148.99.28
  23. ip 94.250.248.234
  24. ip 160.16.223.90
Add Comment
Please, Sign In to add comment