Advertisement
hazmalware

2018-07-31 Hancitor Maldoc Distribution URLs

Jul 31st, 2018
633
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.98 KB | None | 0 0
  1. 2018-07-31 Hancitor Maldoc Distribution URLs
  2. IRS themed malspam delivering hancitor
  3. sender: irs@aubodyshop.com
  4.  
  5. hxxp://cliptrips.com
  6. hxxp://cliptrips.net
  7. hxxp://cliptrips.org
  8. hxxp://destinationvasectomy.info
  9. hxxp://great-harvest.biz
  10. hxxp://great-harvest.info
  11. hxxp://great-harvest.us
  12. hxxp://greatharvest.co
  13. hxxp://greatharvest.info
  14. hxxp://greatharvestbirmingham.com
  15. hxxp://greatharvestbread.co
  16. hxxp://greatharvestbread.info
  17. hxxp://greatharvestbreadco.info
  18. hxxp://greatharvestbreadco.net
  19. hxxp://greatharvestfranchising.com
  20. hxxp://marychurchphotography.info
  21. hxxp://marychurchphotography.net
  22. hxxp://racheldessinphotography.com
  23. hxxp://racheldessinphotography.net
  24. hxxp://racheldessinphotography.org
  25. hxxp://richlandbrewingco.com
  26.  
  27. HANCITOR MALDOC FROM DISTRO URLs
  28. MD5 2e7e8c35a842695a5d2b799af9b05578
  29. SHA1 c84e1bf31d755f816779134f863e131e80f11fb9
  30. SHA256 5ef79883fa78daaa2aeba3816f650e6fc5cf69a0f14138adf891b6dfd8999165
  31.  
  32. HANCITOR C2
  33. hxxp://terabsedsand.ru/4/forum.php
  34. hxxp://fortryhowpar.com/4/forum.php
  35. hxxp://widingwilid.ru/4/forum.php
  36.  
  37. PONY / EVILPONY / PANDA BANKER PAYLOAD URLS
  38. hxxp://uptowndermatologyandaesthetics.com/wp-content/plugins/header-footer/lib/easytabs/1
  39. http://newswriting.com/wp-content/plugins/disable-comments/includes/1
  40. http://powerplaygenerators.com/wp-content/plugins/et-shortcodes/1
  41. hxxp://uptowndermatologyandaesthetics.com/wp-content/plugins/header-footer/lib/easytabs/2
  42. http://newswriting.com/wp-content/plugins/disable-comments/includes/2
  43. http://powerplaygenerators.com/wp-content/plugins/et-shortcodes/2
  44. hxxp://uptowndermatologyandaesthetics.com/wp-content/plugins/header-footer/lib/easytabs/3
  45. http://newswriting.com/wp-content/plugins/disable-comments/includes/3
  46. http://powerplaygenerators.com/wp-content/plugins/et-shortcodes/3
  47.  
  48. PONY / EVILPONY C2
  49. hxxp://fortryhowpar.com/mlu/forum.php
  50. hxxp://fortryhowpar.com/d2/about.php
  51.  
  52. PANDA BANKER DOMAIN
  53. nauseorofte.ru
  54.  
  55.  
  56. additional payload URLS courtesy of @Techhelplist
  57. https://pastebin.com/raw/f9J4wTA6
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement