ExecuteMalware

2020-10-09 ZLoader IOCs

Oct 9th, 2020
3,369
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.82 KB | None | 0 0
  1. SUBJECTS OBSERVED
  2. Contract 6691 information
  3.  
  4. THREAT ATTRIBUTION: ZLOADER
  5.  
  6. SENDERS OBSERVED
  7.  
  8. EXCEL FILE NAMES
  9. Ord6691.xls
  10.  
  11. EXCEL FILE HASHES
  12. 0be068879283c6a4b83b87221583e772
  13.  
  14. ZLOADER PAYLOAD HASHES
  15. LIykZLDb.html
  16. c9af74fc65811bd2cdc2fe8d9633b81b
  17.  
  18. ZLOADER PAYLOAD URLs
  19. https://dataworxsystems.com/6ncaq0.php
  20. https://cforcemarine.com/bvprba.php
  21. https://floridalimousinerental.com/b7ub0h.php
  22. https://fredshead.info/txiao2.php
  23.  
  24. dataworxsystems.com
  25. cforcemarine.com
  26. floridalimousinerental.com
  27. fredshead.info
  28.  
  29. ZLOADER C2s
  30. https://1stsecuritysolutions.co.uk/17vfj3.php
  31. https://aplusevents.com.au/elxbmr.php
  32. https://autoescolatopsul.com.br/zsog59.php
  33. https://avecla.es/d3k34t.php
  34. https://triccirohepe.tk/wp-smarts.php
  35. https://botchicoffee.com/fmsbdt.php
  36. https://buddingreport.com/yxewxx.php
Add Comment
Please, Sign In to add comment