Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #Remcos #RAT #Trojan
- ----------------------------
- 06-02-2019 IOC's
- ----------------------------
- Main object- "reader.exe"
- url http://bonallegro.5v.pl/reader.exe
- sha256 406f05dcc17634183356d39123ed4a79cf52a120864232ef01b6c1b276fa708e
- sha1 4b63b3e43d71fe5a87a75a49c90e67cbf73bbcd5
- md5 1599a9125410c5064ba9d80acdd03d09
- DNS requests
- domain x40.spdns.eu
- Connections
- ip 159.65.193.252
Add Comment
Please, Sign In to add comment