Advertisement
MalwareBreakdown

06/25/2020: ZLoader Campaign IOCs

Jun 25th, 2020
13,512
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.68 KB | None | 0 0
  1. https://twitter.com/DynamicAnalysis/status/1276181049857454081
  2.  
  3. #ZLoader #malspam for today with .xls attachments.
  4.  
  5. Downloader URLs:
  6. https://estudiolacazezancarini.com/wp-crunch.php
  7. https://germdisruptor.com/wp-crunch.php
  8. https://gurukal.in/wp-crunch.php
  9. https://indoeducation.com/wp-crunch.php
  10.  
  11. DLL downloaded from:
  12. healthhuthlasu.cf
  13.  
  14. #ZLoader C2s:
  15. https://bilaalsblog.com/wp-parsing.php
  16. https://cotentialgroup.com/wp-parsing.php
  17. https://danielamartinezs.com/wp-parsing.php
  18. https://ddtwo.mirdamadsch.ir/wp-parsing.php
  19. https://sunctheedersga.cf/wp-parsing.php
  20. https://titeboucaltiatin.tk/wp-parsing.php
  21.  
  22. XLS sample:
  23. https://app.any.run/tasks/ae29c0ad-74e9-4552-97d0-a9584f8be6e1#
  24.  
  25. DLL Sample:
  26. https://app.any.run/tasks/9362d583-ab76-4091-9cd4-f1d1adc8dedd
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement