PhishTotal

GOOGLE phish running on callgardner[.]com

May 9th, 2018
276
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.11 KB | None | 0 0
  1. Found: 2018-05-09 09:21:16.070000
  2. URL: http://callgardner.com/ssl/Drop8.zip
  3. File: callgardner.com-ssl-Drop8.zip
  4. Domain: callgardner.com
  5. Target: GOOGLE
  6. Name Size Date MD5 Drop8/Drop8/auth.php 406 2017-02-09 03:43:08 f50b6f999a270444c0951dbb1d6a2dde
  7. File appears in 26 kits
  8. Drop8/Drop8/dbx/aol.png 1183 2014-04-23 03:02:00 1db15cc5ad50540b10cde2d733efd2a4
  9. File appears in 1262 kits and under 3 different file names
  10. Drop8/Drop8/dbx/avatar_2x.png 2195 2014-04-23 03:03:00 17540f255f86c00bde81020fcc165989
  11. File appears in 954 kits and under 2 different file names
  12. Drop8/Drop8/dbx/checkmark.png 239 2014-04-25 19:01:50 8b596881d19d5906d926839a9c23e80c
  13. File appears in 1336 kits and under 2 different file names
  14. Drop8/Drop8/dbx/cJZKeOuBrn4kERxqtaUH3T8E0i7KZn-EPnyo3HZu7kw.woff 21956 2014-04-23 03:03:00 3eb14f3838ada50e10f062a895c3b9cf
  15. File appears in 1196 kits and under 2 different file names
  16. Drop8/Drop8/dbx/docs-icon.png 52997 2014-04-23 03:02:00 83ad8d0b5df7150110564b46fc0b3911
  17. File appears in 1161 kits and under 2 different file names
  18. Drop8/Drop8/dbx/DXI1ORHCpsQm3Vp6mXoaTXhCUOGz7vYGh680lGh-uXM.woff 22656 2014-04-23 03:03:00 7c5d9f078bea8c1fc0b21a764b832138
  19. File appears in 1196 kits and under 2 different file names
  20. Drop8/Drop8/dbx/email.png 2921 2014-04-23 03:02:00 f093ed003976ef8aa9d299051c06f26b
  21. File appears in 1267 kits and under 2 different file names
  22. Drop8/Drop8/dbx/favicon-vflk5FiAC.ico 6518 2017-02-09 03:24:30 9391620020d44c78b0dc51abbcd151a0
  23. File appears in 729 kits and under 5 different file names
  24. Drop8/Drop8/dbx/footer-img.jpg 7601 2017-02-09 03:12:20 69d762cc27ffc5a6a0c6527ae6a36f96
  25. File appears in 42 kits
  26. Drop8/Drop8/dbx/Google Docs.png 232013 2014-04-23 03:02:00 4ab62a33783d09ef8b8c17a13ec6b0ef
  27. File appears in 927 kits and under 2 different file names
  28. Drop8/Drop8/dbx/google.png 9005 2014-08-17 13:26:12 b136662d529f0d1dd780056d7a6ff186
  29. File appears in 1290 kits and under 5 different file names
  30. Drop8/Drop8/dbx/googledocs.jpg 14918 2014-04-23 03:03:00 8ff2f663acec81a399f6eaa002d1eb53
  31. File appears in 919 kits
  32. Drop8/Drop8/dbx/jquery.ddslick.min.js 7156 2014-04-23 03:03:00 f0dc534351e239e07d258adcde7a63cd
  33. File appears in 1190 kits and under 2 different file names
  34. Drop8/Drop8/dbx/jquery.min.js 94843 2014-04-23 03:03:00 a13f7f208ba534681deadb1ec7a2e54a
  35. File appears in 1131 kits and under 2 different file names
  36. Drop8/Drop8/dbx/live_hotmail.png 517 2014-04-23 03:02:00 8dccdb0f930ec8ff6c62dd13474fa9f4
  37. File appears in 1261 kits and under 3 different file names
  38. Drop8/Drop8/dbx/logo_strip.png 21712 2017-02-09 01:46:14 eabe4073712f89e9110d90bd6b3db2c5
  39. File appears in 42 kits
  40. Drop8/Drop8/dbx/mail_gmail.png 1528 2014-04-23 03:02:00 5d2f329d5813e9ad215d0117610a58c5
  41. File appears in 1261 kits and under 3 different file names
  42. Drop8/Drop8/dbx/o365.png 922 2017-02-09 01:51:44 3146a88bf61e046ba106196d8945c04b
  43. File appears in 83 kits
  44. Drop8/Drop8/dbx/universal_language_settings-21.png 199 2014-04-23 03:03:00 4a2d1168a691747daf4d22e0dc483958
  45. File appears in 1435 kits and under 2 different file names
  46. Drop8/Drop8/dbx/x_8px.png 154 2014-04-25 19:12:30 4e3d78afc1958e6e12226cbf27f236bd
  47. File appears in 1166 kits and under 2 different file names
  48. Drop8/Drop8/dbx/yahoo.png 2830 2014-04-23 03:02:00 fda2a0cac8b16568eed32edbc85b5db8
  49. File appears in 1262 kits and under 3 different file names
  50. Drop8/Drop8/dbx/_notes/dwsync.xml 2133 2014-04-23 21:32:08 368e28b664e21e90732382469113dde0
  51. File appears in 906 kits and under 2 different file names
  52. Drop8/Drop8/dispatch.php 4381 2017-02-09 03:43:48 c3f3568c1ff103c5fc072f1ae08cd1b7
  53. File appears in 26 kits
  54. Drop8/Drop8/error.php 28856 2017-02-09 03:37:26 ad0447070811ab0e73ee23d34a218bd5
  55. File appears in 25 kits
  56. Drop8/Drop8/geoplugin.class.php 4647 2014-04-25 14:14:28 c8ea1e960b48a620c00bc65d525a721c
  57. File appears in 1279 kits and under 3 different file names
  58. Drop8/Drop8/index.php 26906 2017-02-09 03:44:40 213722dd498c28e43383d9e2831b77af
  59. File appears in 25 kits
  60. Drop8/Drop8/mail.php 63 2017-05-30 08:45:14 104bcd366505f4941fbe9fad7a6eb6f8
  61. File appears in 5 kits
  62. Drop8/Drop8/SpryAssets/SpryValidationPassword.css 2426 2014-07-15 15:06:16 97faad16686bef5246d0953311bffdc8
  63. File appears in 1141 kits
  64. Drop8/Drop8/SpryAssets/SpryValidationPassword.js 20828 2014-07-15 15:06:16 d6be38fb42c2e9618c9d5f2664078c19
  65. File appears in 1134 kits
  66. Drop8/Drop8/SpryAssets/SpryValidationTextField.css 3122 2014-07-15 15:04:04 997fda9f352033c20b5fbb8fc361537c
  67. File appears in 1146 kits
  68. Drop8/Drop8/SpryAssets/SpryValidationTextField.js 77624 2014-07-15 15:04:04 7947cb5a92373e747f786adfe1d49356
  69. File appears in 1131 kits
  70. Drop8/Drop8/verification.php 52879 2017-02-09 03:39:04 9bcb33fe7d332db4fb974f9f65018bdc
  71. File appears in 26 kits
  72. Drop8/Drop8/__MACOSX/._auth.php 211 2017-02-09 03:43:08 adf5996bc4d24146584e501ed082800c
  73. File appears in 7 kits and under 36 different file names
  74. Drop8/Drop8/__MACOSX/._dbx 211 2017-02-09 06:40:44 adf5996bc4d24146584e501ed082800c
  75. File appears in 7 kits and under 36 different file names
  76. Drop8/Drop8/__MACOSX/._dispatch.php 211 2017-02-09 03:43:48 adf5996bc4d24146584e501ed082800c
  77. File appears in 7 kits and under 36 different file names
  78. Drop8/Drop8/__MACOSX/._error.php 211 2017-02-09 03:37:26 adf5996bc4d24146584e501ed082800c
  79. File appears in 7 kits and under 36 different file names
  80. Drop8/Drop8/__MACOSX/._geoplugin.class.php 211 2014-04-25 14:14:28 adf5996bc4d24146584e501ed082800c
  81. File appears in 7 kits and under 36 different file names
  82. Drop8/Drop8/__MACOSX/._index.php 211 2017-02-09 03:44:40 adf5996bc4d24146584e501ed082800c
  83. File appears in 7 kits and under 36 different file names
  84. Drop8/Drop8/__MACOSX/._mail.php 211 2017-02-09 11:58:18 adf5996bc4d24146584e501ed082800c
  85. File appears in 7 kits and under 36 different file names
  86. Drop8/Drop8/__MACOSX/._SpryAssets 211 2017-02-09 06:40:44 adf5996bc4d24146584e501ed082800c
  87. File appears in 7 kits and under 36 different file names
  88. Drop8/Drop8/__MACOSX/._verification.php 211 2017-02-09 03:39:04 adf5996bc4d24146584e501ed082800c
  89. File appears in 7 kits and under 36 different file names
  90. Drop8/Drop8/__MACOSX/dbx/._aol.png 211 2014-04-23 03:02:00 adf5996bc4d24146584e501ed082800c
  91. File appears in 7 kits and under 36 different file names
  92. Drop8/Drop8/__MACOSX/dbx/._avatar_2x.png 211 2014-04-23 03:03:00 adf5996bc4d24146584e501ed082800c
  93. File appears in 7 kits and under 36 different file names
  94. Drop8/Drop8/__MACOSX/dbx/._checkmark.png 211 2014-04-25 19:01:50 adf5996bc4d24146584e501ed082800c
  95. File appears in 7 kits and under 36 different file names
  96. Drop8/Drop8/__MACOSX/dbx/._cJZKeOuBrn4kERxqtaUH3T8E0i7KZn-EPnyo3HZu7kw.woff 211 2014-04-23 03:03:00 adf5996bc4d24146584e501ed082800c
  97. File appears in 7 kits and under 36 different file names
  98. Drop8/Drop8/__MACOSX/dbx/._docs-icon.png 211 2014-04-23 03:02:00 adf5996bc4d24146584e501ed082800c
  99. File appears in 7 kits and under 36 different file names
  100. Drop8/Drop8/__MACOSX/dbx/._DXI1ORHCpsQm3Vp6mXoaTXhCUOGz7vYGh680lGh-uXM.woff 211 2014-04-23 03:03:00 adf5996bc4d24146584e501ed082800c
  101. File appears in 7 kits and under 36 different file names
  102. Drop8/Drop8/__MACOSX/dbx/._email.png 211 2014-04-23 03:02:00 adf5996bc4d24146584e501ed082800c
  103. File appears in 7 kits and under 36 different file names
  104. Drop8/Drop8/__MACOSX/dbx/._favicon-vflk5FiAC.ico 211 2017-02-09 03:24:30 adf5996bc4d24146584e501ed082800c
  105. File appears in 7 kits and under 36 different file names
  106. Drop8/Drop8/__MACOSX/dbx/._footer-img.jpg 211 2017-02-09 03:12:20 adf5996bc4d24146584e501ed082800c
  107. File appears in 7 kits and under 36 different file names
  108. Drop8/Drop8/__MACOSX/dbx/._Google Docs.png 211 2014-04-23 03:02:00 adf5996bc4d24146584e501ed082800c
  109. File appears in 7 kits and under 36 different file names
  110. Drop8/Drop8/__MACOSX/dbx/._google.png 211 2014-08-17 13:26:12 adf5996bc4d24146584e501ed082800c
  111. File appears in 7 kits and under 36 different file names
  112. Drop8/Drop8/__MACOSX/dbx/._googledocs.jpg 211 2014-04-23 03:03:00 adf5996bc4d24146584e501ed082800c
  113. File appears in 7 kits and under 36 different file names
  114. Drop8/Drop8/__MACOSX/dbx/._jquery.ddslick.min.js 211 2014-04-23 03:03:00 adf5996bc4d24146584e501ed082800c
  115. File appears in 7 kits and under 36 different file names
  116. Drop8/Drop8/__MACOSX/dbx/._jquery.min.js 211 2014-04-23 03:03:00 adf5996bc4d24146584e501ed082800c
  117. File appears in 7 kits and under 36 different file names
  118. Drop8/Drop8/__MACOSX/dbx/._live_hotmail.png 211 2014-04-23 03:02:00 adf5996bc4d24146584e501ed082800c
  119. File appears in 7 kits and under 36 different file names
  120. Drop8/Drop8/__MACOSX/dbx/._logo_strip.png 211 2017-02-09 01:46:14 adf5996bc4d24146584e501ed082800c
  121. File appears in 7 kits and under 36 different file names
  122. Drop8/Drop8/__MACOSX/dbx/._mail_gmail.png 211 2014-04-23 03:02:00 adf5996bc4d24146584e501ed082800c
  123. File appears in 7 kits and under 36 different file names
  124. Drop8/Drop8/__MACOSX/dbx/._o365.png 211 2017-02-09 01:51:44 adf5996bc4d24146584e501ed082800c
  125. File appears in 7 kits and under 36 different file names
  126. Drop8/Drop8/__MACOSX/dbx/._universal_language_settings-21.png 211 2014-04-23 03:03:00 adf5996bc4d24146584e501ed082800c
  127. File appears in 7 kits and under 36 different file names
  128. Drop8/Drop8/__MACOSX/dbx/._x_8px.png 211 2014-04-25 19:12:30 adf5996bc4d24146584e501ed082800c
  129. File appears in 7 kits and under 36 different file names
  130. Drop8/Drop8/__MACOSX/dbx/._yahoo.png 211 2014-04-23 03:02:00 adf5996bc4d24146584e501ed082800c
  131. File appears in 7 kits and under 36 different file names
  132. Drop8/Drop8/__MACOSX/dbx/.__notes 211 2017-02-09 06:40:44 adf5996bc4d24146584e501ed082800c
  133. File appears in 7 kits and under 36 different file names
  134. Drop8/Drop8/__MACOSX/dbx/_notes/._dwsync.xml 211 2014-04-23 21:32:08 adf5996bc4d24146584e501ed082800c
  135. File appears in 7 kits and under 36 different file names
  136. Drop8/Drop8/__MACOSX/SpryAssets/._SpryValidationPassword.css 211 2014-07-15 15:06:16 adf5996bc4d24146584e501ed082800c
  137. File appears in 7 kits and under 36 different file names
  138. Drop8/Drop8/__MACOSX/SpryAssets/._SpryValidationPassword.js 211 2014-07-15 15:06:16 adf5996bc4d24146584e501ed082800c
  139. File appears in 7 kits and under 36 different file names
  140. Drop8/Drop8/__MACOSX/SpryAssets/._SpryValidationTextField.css 211 2014-07-15 15:04:04 adf5996bc4d24146584e501ed082800c
  141. File appears in 7 kits and under 36 different file names
  142. Drop8/Drop8/__MACOSX/SpryAssets/._SpryValidationTextField.js 211 2014-07-15 15:04:04 adf5996bc4d24146584e501ed082800c
  143. File appears in 7 kits and under 36 different file names
  144.  
  145. 3 Email addresses found:
  146. 'doc@special.com (appears in 8 kits)
  147. gp_support@geoplugin.com (appears in 1219 kits)
  148. c.e.o_office@aol.com (appears in 5 kits)
  149.  
  150.  
  151.  
  152. https://texasmalwareblog.blogspot.com @phish_total
Add Comment
Please, Sign In to add comment