Advertisement
vk_intel

7-9-2018: #Gozi #ISFB Botnet ID 2002

Jul 9th, 2018
463
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.66 KB | None | 0 0
  1. MD5: 3414c281d406652da549f182112ccc48
  2.  
  3. DGA Seed:
  4. 0x4636f0f5
  5.  
  6. Botnet ID ['2002']
  7. Encryption key ['Gu9foUnsY506KSJ1']
  8. 32-bit DLL URLs ['providedatheyfromyouthe.club/key/x32.bin', 'file://%appdata%/system32.dll']
  9. 64-bit DLL URLs ['providedatheyfromyouthe.club/key/x64.bin', 'file://%appdata%/system64.dll']
  10. IP Service ['curlmyip.net']
  11. DGA CRC ['0x4636f0f5']
  12. Domains ['otherwiselist.at']
  13. DGA Base URL ['www.openssl.org/source/license.txt']
  14. TOR Domains ['aaxvkah7dudzoloq.onion']
  15.  
  16. Domains:
  17. ['adverincludedaeric.club','softwaresouhud.club','copyrightproductused.club','causedtheprodsoftware.club','follmuststalicensefollap.club']
  18.  
  19. URI Path:
  20.  
  21. /images/
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement