Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #Phorpiex #Botnet #Malware
- -------------------------------
- 18-10-2018 IOC's
- -------------------------------
- *note*
- because of the insane amount of connections,
- any.run may be unable to make the list of IOC's
- due to 10k+ connections, that may be a part in a network scan for C&C.
- As of now, the ioc's can only be view from the task.
- but the IOC's i'm able to collect is:
- requests:
- http://92.63.197.48/t.php?new=1
- downloads:
- http://92.63.197.48/t.exe
- *6/70 DNS requests(all faceroll-on-keyboard domains):
- iugouehoeohfh.ru
- ugoheoheufefu.ru
- iefigjgdidisi.ru
- ouegouehouseh.ru
- iugouehoeohfh.in Only one that actually responded, but seems dead
- iriototooeuwo.in
Add Comment
Please, Sign In to add comment