MalwareFinder

Samples for Ransomware Actors and web url

Feb 26th, 2018
578
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.36 KB | None | 0 0
  1. SupportXMR - hxxp://torroot[.]ru/xmr/
  2. Diamond Fox C&C - hxxp://skyroot[.]ru/df/
  3.  
  4. Ransomware - To buy the decryptor, you must pay the cost of: 0.074 Bitcoin ($ 1000) - Support Center - Open a New Ticket - Python file Encrypted .. hxxp://n224ezvhg4sgyamb.onion
  5.  
  6. Ransomware! Your personal files have been encrypted! - A self elevating PowerShell script - Unrans - krom.mork@openmail.cc hxxp://hxpoklw6l556364m.onion
  7.  
  8. hxxp://torroot[.]ru/q/admin/ - Quant [PRO] C&C
  9. hxxp://roottor[.]ru/mro/login.php - Zezin C&
  10.  
  11. AZORult v.2.0 - Control Panel - hxxp://80.209.253.114/x/
  12. Passwords - Browsers : 112272
  13.  
  14. hxxp://mqnvhg6lht7lc3nc.onion -
  15.  
  16.  
  17. hxxp://j3t2jilixktibqof.onion - Your Data Have Been Encrpyted. If You Need Your Data Back You Need To Pay Us $300 Dollar. Contect: torbox3uiot6wchz[.]onion create a account here and email us blackpanda007@torbox3uiot6wchz.onion
  18.  
  19. hxxp://j3t2jilixktibqof.onion - Your Data Have Been Encrpyted. If You Need Your Data Back You Need To Pay Us $300 Dollar. Contect: torbox3uiot6wchz[.]onion create a account here and email us blackpanda007@torbox3uiot6wchz.onion
  20.  
  21. Unknown Botnet - Control Panel - hxxp://185.188.206.185/rmhbpoxcnp/
  22.  
  23. BankBot Android Trojan - C&C .. hxxp://intergoodi666.myjino.ru/index.php?cont=kliets&page=1
  24.  
  25. LokiBot Android Banking Trojan - C&C - hxxp://posonikol90.top/dree/
  26.  
  27. Atmos - ZeuS Botnet - hxxp://cbiraqi[.]com/smoke/atmos/cp.php?m=login | Happy Holidays!!!
  28.  
  29. FlexNet Android Botnet - Control Panel - Source Code - hxxp://kingkongtue[.]club
  30.  
  31. BankBot Android Trojan - Control Panel - hxxp://1923045878[.]info/private/kliets.php
  32.  
  33. AZORult v.2 - hxxp://email-g[.]com/stealer/ | TVRAT - hxxp://email-g[.]com/tv/ | XKeyScore Control Panel Login - hxxp://email-g[.]com/log/reports.php .
  34.  
  35. Cryptocurrency Mining Botnets are nothing new - Admin Panel - Malware - hxxp://dd0s[.]xyz/login.php
  36.  
  37. Bankbot - Android - Control Panel - hxxp://bot.mymaster-rem.ru
  38.  
  39. MegalodonHTTP
  40. http://sippinlean.xyz/login.php
  41. http://www.moonmansbotnet.com/login.php
  42.  
  43. Safe Loader - ASPC | ARS | Control Panel | hxxp://54.36.12.175/index.php | hxxp://54.36.12.175/ars/login.php
  44.  
  45. 1ms0rry Miner Panel - Control Panel - hxxp://zlives.ru
  46.  
  47. Private Mining Project | hxxp://flash-update[.]date/manageuser.php?action=login
  48.  
  49. Dark Army - C2 servers - Mr. Robot: Disassembled - Rootkit - SSH - Exploit PDF
  50.  
  51. Bitcoin Botnet Mining - Malware - Control Panel - hxxp://95.46.8.51/panel/login.php - hxxp://95.46.8.51/panel/mr/
  52.  
  53. Official Dark Web iCloud Unlock - A group of Apple employers are ready to unlock any model of iOS .. hxxp://cmnlpnfm2setqvt2.onion
  54.  
  55. ATMJackpot - HO-HO-HO! LET'S MAKE SOME CUTLETS TODAY! - Source Code - hxxp://atmjack6wtk742vg[.]onion
  56.  
  57. Free Online Crypting Service - Tor Network - Crypt File -
  58. BTC : 1KHaaYAvxBKvTLo6X2eUn6NmyriGCZcNzU - hxxp://7lzndqwqflgdh3nm[.]onion
  59.  
  60. Pony, Pony Everywhere!!!! ..
  61. hxxp://engrseltevs[.]com
  62. hxxp://mitsumidistrlbution[.]com
  63.  
  64.  
  65. 1ms0rry MINERPANEL - Control Panel - hxxp://www.iplaymobporn[.]com/index.php
  66.  
  67. AZORult - C&C
  68. hxxp://fadaehh.com/securitydatascreen/
  69. hxxp://bitcoinn1.com/stil1/
  70. hxxp://btckomok.name/
  71. hxxp://gidrevi4.org/
  72. hxxp://chebnkd.datacntrsecured.com/
  73. hxxp://zenobox.eu/
  74. hxxp://fadaehh.com/datacenterfolder/secureddatadrive/
  75.  
  76. Zbot - Deep Web - Admin Panel .. hxxp://uvujqcszb7tgudhi.onion
  77.  
  78. Stealer ( FPD) - Malware
  79. http://cast345.webege.com/index.php…
  80. http://uniteti.net/new/index.php?query=&in=~0&search=Search
  81. http://konterk.com/kont/index.php?query=&in=~0&search=Search
  82.  
  83. Android Botnet.
  84. http://izbura.net/iBanking/admin.php
  85. Alina Botnet
  86. http://myideasis.com/CARDS/admin.php
  87. ZeuS
  88. http://telecomtrust.in/zu/cp.php?m=login
  89.  
  90. New NemeS1S Ransomware - Tor Network - Machines Online : 192 . hxxp://3ce6wsvsk23qtsnk.onion .
  91.  
  92. Mordor Cryptolocker - (c) 2017 - Admin Panel - Made with Russian and Germany love .. hxxp://4bi77g65ytfcwfqm.onion
  93.  
  94. Ransomware viruses that target Websites - Hacked by Vevo - Ooops, your website have been encrypted! - hxxp://7pkiy4j5sk47qy2u.onion
  95.  
  96. Android Banking Malware - GuGi Botnet - Admin Panel - Source Code? hxxp://k91113ck.bget.ru/
  97.  
  98. Android Banking Trojan - BankBot - Admin Panel .. hxxp://mistercraft.ml/private/kliets.php
  99.  
  100. Kronos + Pony - https://goo.gl/BtVEI0 - hxxp://jbbrother.com/jbb/h/i/m/g/login.php
  101. hxxp://alahlalkhaja[.]com/base/mont/admin.php
  102.  
  103. BankBot, BankBot Everywhere!! .. hxxp://174[.]138.51.124
  104.  
  105. BankBot By Maza-in - Android Botnet - hxxp://firta.myjino.ru/
  106.  
  107. Executioner (Cellat) Ransomware - hxxp://execut2bp3arv6er.onion
  108.  
  109. Another link - Interconnector Service - Cell phone reports - Cell phone interception - Full Access .. hxxp://e4mlgspo4z23s7c5.onion
  110.  
  111. BankBot, BankBot Everywhere!! #Banking #BankBot .. hxxp://papi2s[.]mcdir[.]ru/?cont=kliets&page=1
  112.  
  113. r3Nt 4 h4CK3R | rent4ndh[@]protonmail.ch | hxxp://ndhzwarzrankrxzt.onion
  114.  
  115. Layer 7 DDoS Service - Control Panel - IOT Botnet - VimProducts DDoS Service (IOT/Unprotected) - hxxp://ddoszedrip2fsxzo[.]onion
  116.  
  117. Decryption Service | wowsmith123456@posteo.net | Petya Ransomware | Really?? .. Fake!! hxxp://23odsus7tobvmw5r.onion
  118.  
  119. Bankbot, Bankbot Everywhere!! hxxp://xyu77s8c.beget.tech
  120.  
  121. Pony Botnet - Malware - hxxp://cjponies[.]ga/cj/gate.php
  122.  
  123. Kronos Banking Trojan | 7-13-2014 | hxxp://ol3trvj72hicy6vr.onion/1yc1uMWHJP3Z.mp4
  124.  
  125. Crimin4l Land - Bad boys, Bad Boys Everywhere!! hxxp://criminacs74bzmb4.onion
  126.  
  127. New Black Market | Deep Web | Transit Market | hxxp://za63d76nz24zg33h.onion
  128.  
  129. DBWorld | Your #1 source for high-quality database leaks! | Deep Web | hxxp://dbworldtheunglun.onion
  130.  
  131. New Android Banking Botnet | BankBot V.2.0 | hxxp://showtopik.biz/sadefs/
  132.  
  133. Zemra Botnet C&C Web Panel | hxxp://5nz5hdnkar5mttz5.onion
  134.  
  135. Mordor Ransomware | hxxp://paymentrdbsp4ccs.onion
  136.  
  137. Ransomeware
  138. https://www.hybrid-analysis.com/sample/cb88c3e0bef38cccf209f3901a4d3bbe787546d7e2c373095786fec63a9766d8?environmentId=100
  139.  
  140. Unlocker - iCloud Activation Services - iCloud Removal Service - hxxp://acuhapn7jzkh2z4r.onion
  141.  
  142. Disdain Exploit Kit - XMPP: disdainsupport@xmpp.jp | hxxp://layer7.site/login.php
  143.  
  144. Tor Network - BlaCk Market - Bad Boys, Bad Boys Everywhere!! .. hxxp://darknetncj7k6wzk.onion/ads/oc-admin/index.php?page=login
  145.  
  146. Sigma Ransomware - Your documents, photos, databases and other important files have been encrypted - You can buy both of them for $1000.00 - hxxp://6uhryhsrr577vykz.onion
  147.  
  148. APT34 - apt34@torbox3uiot6wchz.onion - hxxp://6ugt6t4rxit4w2va.onion - Spanish
Add Comment
Please, Sign In to add comment