SHARE
TWEET

2020-01-27 - Hancitor malspam example 1 of 2

malware_traffic Jan 27th, 2020 (edited) 685 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. 2020-01-27 - HANCITOR MALSPAM EXAMPLE 1 OF 2:
  2.  
  3. Received: from yhrrep.zibadecabule.com ([173.219.19.226]) by [removed] for [removd];
  4.         Mon, 27 Jan 2020 16:02:26 +0000 (UTC)
  5. Received: from a10-171.smtp-out.amazonses.com ([54.240.10.171]:58571)
  6.     by mail.int.retailrocket.ru with ESMTP id 06FD5D54AB7
  7.     for [removed]; Mon, 27 Jan 2020 14:48:29 -0100
  8. Date: Mon, 27 Jan 2020 14:48:29 -0100
  9. From: DocuSign Electronic Signature  <rbo@zibadecabule.com>
  10. To: [removed]
  11. Subject: received notification from DocuSign Electronic Signature Service
  12. Reply-To: DocuSign Signature and Invoice <rbo@zibadecabule.com>
  13. Content-Type: text/html;
  14.     charset="windows-1251"
  15. Content-Transfer-Encoding: 7bit
  16.  
  17. <html>
  18. <head>
  19. <meta id="_moz_html_fragment">
  20. <title></title>
  21. </head>
  22. <body>
  23. <div>
  24. <div style="font-family: Verdana; font-size: 12px;obo: xwyaaiqvo">
  25. <div>&nbsp;
  26. <div>&nbsp;
  27. <div
  28. style="border-left: 2px solid rgb(195, 217, 229); margin: 10px 5px 5px
  29. 10px; padding: 10px 0pt 10px 10px;">
  30. <div style="margin: 0pt 0pt 10px;"><b><br>
  31. </b></div>
  32. <div>
  33. <div
  34. style="padding: 2%; background-color: rgb(234, 234, 234); font-family:
  35. Helvetica,Arial,Sans Serif;"><img
  36. style="display: none;">
  37. <table align="center" border="0" cellpadding="0" cellspacing="0"
  38. width="100%">
  39. <tbody>
  40. <tr>
  41. <td>&nbsp;</td>
  42. <td width="640">
  43. <table
  44. style="border-collapse: collapse; background-color: rgb(255, 255, 255);
  45. max-width: 640px;">
  46. <tbody>
  47. <tr>
  48. <td style="padding: 10px 24px;"><img alt="DocuSign"
  49. src="https://eu.docusign.net/Member/Images/email/logo-DS-116x33@2x.png"
  50. style="border: medium none ;" width="116"></td>
  51. </tr>
  52. <tr>
  53. <td style="padding: 0px 24px 30px;">
  54. <table
  55. style="background-color: rgb(30, 76, 161); color: rgb(255, 255, 255);"
  56. align="center" border="0" cellpadding="0" cellspacing="0" width="100%">
  57. <tbody>
  58. <tr>
  59. <td
  60. style="padding: 28px 36px 36px; background-color: rgb(30, 76, 161); color:
  61. rgb(255, 255, 255); font-size: 16px; font-family: Helvetica,Arial,Sans
  62. Serif; width: 100%; text-align: center;"
  63. align="center"><img
  64. src="https://eu.docusign.net/member/Images/email/docInvite-white.png"
  65. style="width: 75px; height: 75px;" height="75" width="75">
  66. <table border="0" cellpadding="0" cellspacing="0"
  67. width="100%">
  68. <tbody>
  69. <tr>
  70. <td
  71. style="border: medium none ; padding-top: 24px; font-size: 16px;
  72. font-family: Helvetica,Arial,Sans Serif; text-align: center; color: rgb(255,
  73. 255, 255);"
  74. align="center">Review and sign the document.</td>
  75. </tr>
  76. </tbody>
  77. </table>
  78. <table border="0" cellpadding="0" cellspacing="0"
  79. width="100%">
  80. <tbody>
  81. <tr>
  82. <td style="padding-top: 30px;" align="center">
  83. <div>
  84. <table cellpadding="0" cellspacing="0">
  85. <tbody>
  86. <tr>
  87. <td
  88. style="font-size: 15px; color: rgb(51, 51, 51); font-family:
  89. Helvetica,Arial,Sans Serif; font-weight: bold; text-align: center;
  90. text-decoration: none; background-color: rgb(255, 196, 35); display: block;"
  91. min-height="44" align="center"><a
  92. href="hxxp://thaienglishthai[.]com/symx/willish.php"
  93. style="font-size: 15px; color: rgb(51, 51, 51); font-family:
  94. Helvetica,Arial,Sans Serif; font-weight: bold; text-align: center;
  95. text-decoration: none; background-color: rgb(255, 196, 35);"
  96. target="_blank"><span style="padding: 0px 24px; line-height: 44px;">SEE
  97. INVOICE</span></a></td>
  98. </tr>
  99. </tbody>
  100. </table>
  101. </div>
  102. </td>
  103. </tr>
  104. </tbody>
  105. </table>
  106. </td>
  107. </tr>
  108. </tbody>
  109. </table>
  110. </td>
  111. </tr>
  112. <tr>
  113. <td
  114. style="padding: 0px 24px 24px; color: rgb(255, 255, 255); font-size: 16px;
  115. font-family: Helvetica,Arial,Sans Serif; background-color: white;"><span
  116. style="font-size: 15px; color: rgb(51, 51, 51); font-family:
  117. Helvetica,Arial,Sans Serif; line-height: 20px;">Dear
  118. Recipient,<br>
  119. <br>
  120. Please sign this invoice<br>
  121. It is an electronically
  122. generated notice.<br>
  123. </span></td>
  124. </tr>
  125. <tr>
  126. <td
  127. style="padding: 0px 24px 12px; background-color: rgb(255, 255, 255);
  128. font-family: Helvetica,Arial,Sans Serif; font-size: 11px; color: rgb(102,
  129. 102, 102);"><br>
  130. </td>
  131. </tr>
  132. <tr>
  133. <td
  134. style="padding: 30px 24px 45px; background-color: rgb(234, 234, 234);">
  135. <p
  136. style="margin-bottom: 1em; font-family: Helvetica,Arial,Sans Serif;
  137. font-size: 13px; color: rgb(102, 102, 102); line-height: 18px;"><b>This
  138. message keeps a secure
  139. information. Please do not
  140. show this code with
  141. others.</b></p>
  142. <p
  143. style="margin-bottom: 1em; font-family: Helvetica,Arial,Sans Serif;
  144. font-size: 13px; color: rgb(102, 102, 102); line-height:
  145. 18px;"><b>Additional
  146. Signing Way</b><br>
  147. Visit DocuSign, click on 'Access
  148. Documents', and enter the security code:
  149. 08DEA59AF4</p>
  150. <p
  151. style="margin-bottom: 1em; font-family: Helvetica,Arial,Sans Serif;
  152. font-size: 13px; color: rgb(102, 102, 102); line-height: 18px;"><b>About
  153. Our Service</b><br>
  154. Sign invoice  in just
  155. few clicks. It is
  156. risk-free. Whether
  157. you're at work, at home or
  158. on-the-go -- DocuSign
  159. provides a professional solution for
  160. Digital Transaction Management.</p>
  161. <p
  162. style="margin-bottom: 1em; font-family: Helvetica,Arial,Sans Serif;
  163. font-size: 13px; color: rgb(102, 102, 102); line-height: 18px;"><b>Have
  164. questions regarding an Invoice?</b><br>
  165. If you need to modify an
  166. invoice or have inquiries
  167. , please
  168. contact the sender by emailing them
  169. directly.<br>
  170. <br>
  171. If you cannot see
  172. an invoice, please see the <a
  173. href="https://account.docusign.com/"
  174. style="text-decoration: none; color: rgb(53, 126, 235);"
  175. target="_blank">Help with Signing </a> page on our <a
  176. href="https://account.docusign.com/"
  177. style="text-decoration: none; color: rgb(53, 126, 235);"
  178. target="_blank">support Center </a>.<br>
  179. &nbsp; <br>
  180. </p>
  181. <p
  182. style="margin-bottom: 1em; font-family: Helvetica,Arial,Sans Serif; color:
  183. rgb(102, 102, 102); font-size: 10px; line-height: 14px;">
  184. This
  185. message was sent to you by DocuSign Electronic Signature Service.<br>
  186. </p>
  187. </td>
  188. </tr>
  189. </tbody>
  190. </table>
  191. </td>
  192. <td>&nbsp;</td>
  193. </tr>
  194. </tbody>
  195. </table>
  196. </div>
  197. </div>
  198. </div>
  199. </div>
  200. </div>
  201. </div>
  202. </div>
  203. </body>
  204. </html>
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
Top