Advertisement
G0dR4p3

Shade_Ransomware_IOCs_22-01-2019

Jan 22nd, 2019
211
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.69 KB | None | 0 0
  1. #Shade #Troldesh #Ransomware
  2. -------------------------------------
  3. 22-01-2019 IOC's
  4. -------------------------------------
  5. Main object- "39ab2cee9c8bc71a8f708bd374dbf37ca0d31487cebb686ac23b81feb6e2d58c.bin.gz"
  6. sha256 3b2b81cbb3fc2750e92976f58f9731763dd61cc0337d401fa9f550a8d2d16ae8
  7. sha1 2f351e3b65838d6ab9192d81cd50e742c8a724fa
  8. md5 5c7011b30b1eb5c4796374c4e48d9df8
  9. Dropped executable file
  10. sha256 C:\Users\admin\AppData\Local\Temp\rad6350C.tmp 45e0d4bf86d3c98780dd286eb70a2813dce12ab88267b162bf9bb91d63b4d45f
  11. DNS requests
  12. domain vina.market
  13. Connections
  14. ip 45.252.248.24
  15. ip 154.35.32.5
  16. ip 208.83.223.34
  17. HTTP/HTTPS requests
  18. url http://vina.market/wp-includes/ID3/ssj.jpg
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement