HerbieZimmerman

Fake Screenconnect

Jan 26th, 2025
258
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.83 KB | Cybersecurity | 0 0
  1. Week of Jan 19, 2025
  2. =========================
  3.  
  4. Tax2024file.pdf.exe - https://www.virustotal.com/gui/file/2067c33c2460b3eeea4060888e848559aa58eb7a68810eb48c863e552ae8e2af
  5. - Connect: hrhelp[.]top
  6. - Downloaded from: hxxps://hidrive[.]ionos[.]com/api/sharelink/download?id=Tgz34ZhXO
  7.  
  8. Davidtaxdocs5126.exe - https://www.virustotal.com/gui/file/82cb1fee5f4a7420d378efe0c4a9fc52d547208cb04c87d17c37b714778c9935
  9. - Connect: lory473[.]top
  10. - Downloaded from: hxxps://hidrive[.]ionos[.]com/api/sharelink/download?id%3DPZbONhzWz
  11.  
  12. Statement#607105.exe | Statement#530038.exe - https://www.virustotal.com/gui/file/c04edc5176b76efcd431ddd1f836417adee2ee3a59e0fa782d9b13dd6c8142c1
  13. - Connect: basm[.]innocreed[.]com
  14. - Downloaded from: NA
  15.  
  16. ScannedDocs.Client.exe - c48cf55e0b1b7fb93d0cd9d893444a52be1d4790727b8198f09b83dd8927d3b1
  17. - Connect: pdf[.]e-rememberdec[[.]]com or hosting[.]4cloud[[.]]click
  18. - Downloaded from: hxxps://voicesbybrenda[.]com/web/ --> hxxps://esign-fileccloud[.]com/user2/main[.]html
  19.  
  20. Stevetaxdocs.pdf1067.exe - https://www.virustotal.com/gui/file/a1e4869b1cafdb53de14b4db463cef042eceeac35f08355c4c88a615b96851ce
  21. - Connect: lory473[.]top
  22. - Downloaded from: hxxps://hidrive[.]ionos[.]com/api/sharelink/download?id=a61m9NUxq
  23.  
  24. Recently_S_S_A_eStatementForum_Viewr5406991387785667481_Pdf.Client (1).exe - df79874eafe0f1814a52d8a84f1a25a9142751c489dd8cedbca61d7fa2edd55
  25. Recently_S_S_A_eStatementForum_Viewr5406991387785667481_Pdf.Client.exe - 9ef8f563443edb6bd99c1b3fdaace79836117295f3875c87ea02afc436d7844f
  26. - Connect: NA
  27. - Downloaded from: hxxps://ssastatementshelpcenter[.]de/top/
  28.  
  29. marketing_report-pdf.Client.exe - e524895a256b5ce58882eea704479bd2631d0316d0097fcb54ae911f503df361
  30. - Connect: 147[.]93[.]146[.]95
  31. - Downloaded from: hxxps://authentification-live[.]es/am/G/
  32.  
  33. Recently_S_S_A_eStatementForum_Viewr407293563918096_Pdf.Client.exe - 3081a067e4c69f95b61198603ebd6243fcf06372eb437fbbbd09d6bda3a21c90
  34. - Connect: retireafter5m.co
  35. - Downloaded from: hxxps://region-businesss-esignals[.]s3[.]us-east-1[.]amazonaws[.]com/region-businesss-esignals-46980[.]html --> hxxps://ssastatementshelpcenter[.]de/top/
  36.  
  37. document_6790debf2fb6a.exe | document_6790de7fcf66f.exe - 4f6d37c85761871a9c0fb2e544dc89935696bcc10ade5fd4280614f69b07f60f
  38. - Connect: 0bd0[.]adrsxpjm0rga0n[.]de
  39. - Downloaded fromn: NA
  40.  
  41. E-Statement.Client.exe - 9afde8ad01845b7ab35e5811f986fa4768a3f871f3af828fa65f2602e8368c9c
  42. - Connect: 212[.]224[.]88[.]186
  43. - Downloaded from: socialsecurityupdates-gov[.]de/BENFITS/
  44.  
  45. project_plan-pdf.Client.exe - 87444c61e2316a8c3452482adcfafa180ee420344841acb28ce06a0105ec4e41
  46. - Connect: hmz.uniupdate.net
  47. - Downloaded from: hxxps://ahmapemanel[.]com/us/377/
  48.  
  49. Statement.exe - https://www.virustotal.com/gui/file/712a4267f8ea44076393c6c7d0a7ce8ab60903b898b9ab4420aaa9a6ca5d2865
  50. - Connect: skoller[.]innocreed[.]com
  51. - Downloaded from: hxxps://s[.]id/gqX13
Advertisement
Add Comment
Please, Sign In to add comment