Advertisement
vk_intel

7-18-2018: #Gozi #ISFB Botnet "201872" JP tor=1

Jul 18th, 2018
628
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.59 KB | None | 0 0
  1. MD5: a04f84cde39b2dae57b25e604e7139e9
  2.  
  3. Botnet ID ['201872']
  4. Bot version ['2.16']
  5. Bot build ['996']
  6. Server id ['12']
  7. Crc hash ['64efb6f']
  8. IP Service ['curlmyip.net']
  9. 32-bit TOR DLL URLs ['upload-speed.icu/images/1.png', 'file://c:\\test\\test32.dll']
  10. 64-bit TOR DLL URLs ['upload-speed.icu/images/2.png', 'file://c:\\test\\tor64.dll']
  11. Encryption key ['s4Sc9mDb35Ayj8oO']
  12. DGA CRC ['0x4eb7d2ca']
  13. Domains ['hu.ecologicindustries.com']
  14. DGA Base URL ['constitution.org/usdeclar.txt']
  15. TOR Domains ['iod5tem372udbzu2.onion']
  16.  
  17. URI Path:
  18.  
  19. /images/
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement