Advertisement
PhishTotal

WELLS FARGO phish running on akconnect-tr[.]com

Jan 4th, 2018
526
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.32 KB | None | 0 0
  1. Found: 2018-01-03 07:15:03.755000
  2. URL: http://www.akconnect-tr.com/wellsb.zip
  3. File: www.akconnect-tr.com-foo-wellsb.zip
  4. Domain: akconnect-tr.com
  5. Target: WELLS FARGO
  6. Name Size Date MD5 wellsb/go.htm 438138 2017-07-20 20:50:04 39daa0e9cd0b73ecad6248f569871089
  7. wellsb/go.php 718 2018-01-02 04:14:46 78a220031c7f16067b2a7197ddbf497f
  8. wellsb/go_files/a 471 2017-07-20 20:46:06 aaa92a94c3b8c60cabc5fb753f88b846
  9. wellsb/go_files/atadun.js 1067 2017-07-20 20:46:06 a5da2c3beec70f1d3a30f8b99a77de79
  10. File appears in 3 kits and under 2 different file names
  11. wellsb/go_files/conutils-6.js 9948 2017-07-20 20:46:06 3334b679f746163002f73f7f7dd79422
  12. File appears in 3 kits and under 2 different file names
  13. wellsb/go_files/login-userprefs.js 146928 2017-07-20 20:46:06 be532c1e182f9fdafc489af19acff160
  14. wellsb/go_files/nd 36644 2018-01-02 04:18:00 1ad6b44c90a26d0648fcb4f7c2690fa6
  15.  
  16. 2 Email addresses found:
  17. donzaza89@gmail.com
  18. tee@xxx.com (appears in 13 kits)
  19.  
  20.  
  21.  
  22. https://texasmalwareblog.blogspot.com @phish_total
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement