MalwareQuinn

QakbotIOC_Aug3

Aug 3rd, 2020
14,295
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.18 KB | None | 0 0
  1. Qakbot fired up spx147 today. H/T to @mesa_matt for the find today!
  2.  
  3. VBS Name: PH4764882.vbs
  4.  
  5. Urls:
  6. http://ttt.s-host.net/heaqwhmudzc/8888888.png
  7. http://izi-jobs.re/zklvxtelxlw/8888888.png
  8. http://astamvillagelodge.com/rbntjp/8888888.png
  9. http://fresh-organic-food.com/ddpauqvq/8888888.png
  10.  
  11. IPs:
  12. 98.173.34.212:995
  13. 98.115.243.237:443
  14. 188.26.243.186:443
  15. 96.18.240.158:443
  16. 41.225.13.128:8443
  17. 5.15.84.129:443
  18. 67.247.254.82:443
  19. 67.141.24.20:443
  20. 94.96.84.73:21
  21. 96.234.20.230:443
  22. 207.255.161.8:995
  23. 96.20.108.17:2222
  24. 115.21.224.117:443
  25. 98.4.227.199:443
  26. 68.39.160.40:443
  27. 5.107.157.123:2222
  28. 47.153.115.154:990
  29. 63.155.9.141:995
  30. 69.47.26.41:443
  31. 217.165.112.13:995
  32. 216.137.142.200:2222
  33. 70.123.92.175:2222
  34. 189.163.82.104:443
  35. 72.209.191.27:443
  36. 173.173.72.199:443
  37. 81.133.234.36:2222
  38. 71.56.53.127:443
  39. 45.32.155.12:443
  40. 45.32.154.10:443
  41. 91.99.253.213:995
  42. 189.150.106.26:995
  43. 207.246.75.201:443
  44. 172.87.134.226:443
  45. 35.209.218.146:443
  46. 68.60.221.169:465
  47. 72.240.200.181:2222
  48. 216.201.162.158:443
  49. 81.89.5.192:995
  50. 24.203.36.180:2222
  51. 84.117.60.157:443
  52. 213.120.109.73:2222
  53. 197.210.96.222:995
  54. 2.51.240.61:995
  55. 73.227.232.166:443
  56. 176.223.35.173:2222
  57. 5.13.103.187:443
  58. 87.65.204.240:995
  59. 208.93.202.49:443
  60. 166.62.180.194:2078
  61. 46.248.53.24:995
  62. 173.26.189.151:443
  63. 89.247.216.241:443
  64. 66.57.216.53:993
  65. 172.91.19.192:443
  66. 186.6.197.11:443
  67. 200.38.254.177:443
  68. 68.116.98.118:443
  69. 207.255.158.180:443
  70. 74.129.24.163:443
  71. 77.27.173.8:995
  72. 217.165.164.57:2222
  73. 96.232.203.15:443
  74. 86.97.9.224:443
  75. 86.98.89.163:2222
  76. 73.104.218.229:0
  77. 173.163.115.89:2078
  78. 35.134.202.234:443
  79. 96.35.170.82:2078
  80. 90.175.88.99:2222
  81. 86.98.70.252:995
  82. 73.228.1.246:443
  83. 67.165.206.193:993
  84. 119.153.110.160:443
  85. 144.139.47.206:443
  86. 174.82.131.155:995
  87. 117.218.208.239:443
  88. 95.77.144.238:443
  89. 94.96.84.73:443
  90. 104.50.141.139:995
  91. 68.39.177.147:995
  92. 2.50.58.139:443
  93. 36.226.77.179:443
  94. 51.223.63.63:443
  95. 94.59.241.189:995
  96. 98.219.77.197:443
  97. 75.110.250.89:995
  98. 217.165.110.181:443
  99. 66.30.92.147:443
  100. 187.163.101.137:995
  101. 122.57.75.113:443
  102. 72.82.15.220:443
  103. 47.18.250.32:2222
  104. 94.59.241.189:2222
  105. 47.180.66.10:443
  106. 67.209.195.198:443
  107. 47.153.115.154:465
  108. 190.198.127.197:2078
  109. 47.28.135.155:443
  110. 94.52.160.116:443
  111. 75.183.171.155:995
  112. 75.137.239.211:443
  113. 71.182.142.63:443
  114. 134.228.24.29:443
  115. 84.117.176.32:443
  116. 47.153.115.154:443
  117. 83.110.6.64:2222
  118. 61.1.204.173:443
  119. 151.73.120.201:443
  120. 86.98.66.175:2222
  121. 195.162.106.93:2222
  122. 47.153.115.154:993
  123. 86.97.180.221:2222
  124. 76.187.12.181:443
  125. 24.228.7.174:443
  126. 67.6.62.74:443
  127. 189.130.26.216:443
  128. 71.220.191.200:443
  129. 51.9.198.243:2222
  130. 79.113.219.10:443
  131. 148.75.231.53:443
  132. 24.136.34.71:2222
  133. 108.183.3.41:443
  134. 199.247.22.145:443
  135. 64.130.165.255:443
  136. 24.110.96.149:443
  137. 70.164.37.205:995
  138. 67.246.16.250:995
  139. 86.120.237.47:2222
  140. 86.98.61.29:443
  141. 92.59.35.196:2222
  142. 51.241.113.55:443
  143. 89.211.179.56:61201
  144. 74.78.77.189:443
  145. 86.182.234.245:2222
  146. 95.76.185.240:443
  147. 5.13.70.207:443
  148. 108.49.221.180:443
  149. 201.216.216.245:443
  150. 217.162.149.212:443
  151. 24.99.180.247:443
  152. 73.23.194.75:443
  153. 144.202.48.107:443
  154. 172.242.156.50:443
  155. 207.255.161.8:993
  156. 94.96.84.73:443
  157. 41.228.45.165:443
  158. 82.79.67.68:443
  159. 47.153.115.154:995
  160. 31.167.7.42:443
  161. 93.113.177.152:443
  162.  
  163. Sandbox: https://app.any.run/tasks/5662cff3-dc0f-47e7-8abe-065b5c2abf18
Add Comment
Please, Sign In to add comment