Advertisement
DhiaLite

New Browlock under compromised Godaddy doms - Jan 18, 2014

Jan 18th, 2014
326
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.92 KB | None | 0 0
  1. Sat, Jan 18, 2014
  2. #DhiaLite - New Browlock subdomains injected under compromised GoDaddy domains appeared on 62.75.197.221 to 62.75.197.224
  3.  
  4. More subdomains are appearing.
  5.  
  6. #Sample compromised Godaddy 2LDs
  7.  
  8. doctorsofbradenton.com
  9. coolaging.info
  10. coolaging.net
  11. doctorsofboulder.com
  12. doctorsofbirmingham.com
  13. cyberwarriors-usa.info
  14. cyberwarriors-usa.net
  15. cyberwarriors-usa.com
  16. cloudmemorials.info
  17. cloudmemorials.net
  18. cloudmemorials.com
  19. cloudmemorials.org
  20. doctorsofaustin.com
  21. doctorsofatlanta.com
  22. cookiestores.net
  23.  
  24. #Sample url of the Browloack page
  25.  
  26. http://zdgstr.cloudmemorials.org/soft/M2kywhQfuKBrEWnvcCahUHqueGhNmG0Nmd5V547BVNUdPmgX6uNeK0wwgeAuSmkOd7u/H0Z1idBn9Udlm1zMc-g%7E%7E/YmVmMDMyYTI0ODgzNTE2Y2FiODgzYjQ1ZmVmZWMzNjc
  27.  
  28. Same path will work for most domains below.
  29.  
  30. /soft/M2kywhQfuKBrEWnvcCahUHqueGhNmG0Nmd5V547BVNUdPmgX6uNeK0wwgeAuSmkOd7u/H0Z1idBn9Udlm1zMc-g%7E%7E/YmVmMDMyYTI0ODgzNTE2Y2FiODgzYjQ1ZmVmZWMzNjc
  31.  
  32. VT reports
  33. https://www.virustotal.com/en/ip-address/62.75.197.221/information/
  34. https://www.virustotal.com/en/ip-address/62.75.197.222/information/
  35. https://www.virustotal.com/en/ip-address/62.75.197.223/information/
  36.  
  37. #Sample Browlock subdomains on 62.75.197.221-224
  38.  
  39. zdgstr.cloudmemorials.org
  40. zdfgtg.cyberwarriors-usa.com
  41. vrfhdrt.cyberwarriors-usa.com
  42. sdgserg.cookiestores.net
  43. sdfgsert.cyberwarriors-usa.net
  44. nhtryd.cloudmemorials.org
  45. hdtrud.cyberwarriors-usa.info
  46. gvferstg.cookiestores.net
  47. fvgret.coolaging.net
  48. dsgere.coolaging.net
  49. drghdtrjh.cyberwarriors-usa.info
  50. bxfgth.cloudmemorials.net
  51. bhtrdyh.coolaging.info
  52. sdfsth.coolaging.info
  53. dsgsgr.cloudmemorials.net
  54. zsdgth.doctorsofbradenton.com
  55. zdgrgz.doctorsofboulder.com
  56. xtgjtyjtd.doctorsofaustin.com
  57. dsffvse.cloudmemorials.info
  58. cfvserf.cloudmemorials.info
  59. cfawert.cloudmemorials.com
  60. brtdhy.doctorsofaustin.com
  61. bnxttt.doctorsofbirmingham.com
  62. asfrcf.cloudmemorials.com
  63. btrhst.doctorsofatlanta.com
  64. xjtyjdt.doctorsofatlanta.com
  65.  
  66. END
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement