ExecuteMalware

2020-09-03 ZLoader IOCs

Sep 3rd, 2020
3,134
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.74 KB | None | 0 0
  1. THREAT ATTRIBUTION: ZLOADER
  2.  
  3. SUBJECTS OBSERVED
  4. Receipt No. 10000
  5. Sept. New service Invoice, ID # 9416
  6.  
  7. SENDERS OBSERVED
  8. asideglide1972@aol.com
  9. singlestyle1961@aol.com
  10.  
  11. EXCEL FILE NAMES
  12. in10000.xls
  13. Qt.9416.xls
  14.  
  15. EXCEL FILE HASHES
  16. 04EE27991B19322F96131B7E81667369B1156D63CEF4F81AA86E7AE43FFC8C11
  17. 102322065FF0BCF670B819017BC12788DB940403BF9FABAABEF0A1C63ECCF832
  18.  
  19. ZLOADER PAYLOAD URLs
  20. https://divocdiagnostics.com/wp-keys.php
  21. https://educationcrypto.io/wp-keys.php
  22. https://gamehub.ee/wp-keys.php
  23. https://hatcuomhoainhu.com/wp-keys.php
  24.  
  25. divocdiagnostics.com
  26. educationcrypto.io
  27. gamehub.ee
  28. hatcuomhoainhu.com
  29.  
  30. ZLOADER C2s
  31. https://www.4fishing.it/wp-parsing.php
  32. https://adsnoinsta.com/wp-parsing.php
  33.  
  34. 4fishing.it
  35. adsnoinsta.com
Add Comment
Please, Sign In to add comment