Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Malicious subdomains:
- home.southerntransitions.net
- connect.southerntransitions.com
- home.selltokengarff.com
- home.ktxhome.com
- home.goteamrob.com
- twitter.crtcostruzionisrl.com
- my.mylifeamongthewomen.com
- home.hopedaybook.com
- getpdfreader.13stripesbrewery.com
- getpdfreader.lilupicks.com
- home.artdietfitness.com
- home.parkandhome.com
- home.mmaut.com
- aweb.theshotboard.info
- cofee.theshotboard.net
- home.tith.in
- donald.tilmonday.com
- Compromised domains:
- 13stripesbrewery.com
- theshotboard.info
- theshotboard.net
- crtcostruzionisrl.com
- tilmonday.com
- lilupicks.com
- artdietfitness.com
- goteamrob.com
- hopedaybook.com
- ktxhome.com
- mmaut.com
- parkandhome.com
- selltokengarff.com
- tith.in
- mylifeamongthewomen.com
- southerntransitions.net
- IPs:
- 31.214.157.3
- 185.120.144.147
- 185.158.248.151
- 194.76.224.157
- Maldoc samples:
- https://www.virustotal.com/gui/file/24d6087d2f32e88bedde34e81bad584dfb54643557e8134d341514949c5eae95/detection
- https://www.virustotal.com/gui/file/e02a49ad6b6dfcfbd33ddb53725421700e6fe2acd4205c46b42409df9d58473d/detection
- AnyRun sample:
- https://app.any.run/tasks/4c32ed32-d6f6-4f13-8a9e-b80a93903881/
Add Comment
Please, Sign In to add comment