ExecuteMalware

2020-10-09 ZLoader IOCs

Oct 9th, 2020
2,762
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.82 KB | None | 0 0
  1. SUBJECTS OBSERVED
  2. Contract 6691 information
  3.  
  4. THREAT ATTRIBUTION: ZLOADER
  5.  
  6. SENDERS OBSERVED
  7. nagibinadaria1974@aol.com
  8.  
  9. EXCEL FILE NAMES
  10. Ord6691.xls
  11.  
  12. EXCEL FILE HASHES
  13. 0be068879283c6a4b83b87221583e772
  14.  
  15. ZLOADER PAYLOAD HASHES
  16. LIykZLDb.html
  17. c9af74fc65811bd2cdc2fe8d9633b81b
  18.  
  19. ZLOADER PAYLOAD URLs
  20. https://dataworxsystems.com/6ncaq0.php
  21. https://cforcemarine.com/bvprba.php
  22. https://floridalimousinerental.com/b7ub0h.php
  23. https://fredshead.info/txiao2.php
  24.  
  25. dataworxsystems.com
  26. cforcemarine.com
  27. floridalimousinerental.com
  28. fredshead.info
  29.  
  30. ZLOADER C2s
  31. https://1stsecuritysolutions.co.uk/17vfj3.php
  32. https://aplusevents.com.au/elxbmr.php
  33. https://autoescolatopsul.com.br/zsog59.php
  34. https://avecla.es/d3k34t.php
  35. https://triccirohepe.tk/wp-smarts.php
  36. https://botchicoffee.com/fmsbdt.php
  37. https://buddingreport.com/yxewxx.php
Add Comment
Please, Sign In to add comment