Advertisement
Guest User

Ramnit 2018 Campaign Configs

a guest
Oct 4th, 2018
512
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
JSON 2.70 KB | None | 0 0
  1. /*****      NEW RAMNIT CONFIGS 2018    *****/
  2. /***** https://research.checkpoint.com *****/
  3.          /***** @_CPResearch *****/
  4.  
  5.  
  6.  
  7. [
  8.     {
  9.         "dga_seed": 0x8222270B,
  10.         "dga_count": 50,
  11.         "hardcoded_domains": ["goldenfreeanhfirst.com"],
  12.         "botnet": "client",
  13.         "port": 443,
  14.         "rc4_key": "fenquyidh",
  15.         "md5_salt": "45Bn99gT",
  16.         "rsa_key": "30818902818086547a4502a8676b8d2a4ae0fd7adedd16c792fd44c9ffc0d87f52e8497359139998079cb17ceb317257a21df465a62f6e3388556d4d558b9c345b0b9acf5a4c7e34327ee5a4986ba479a5e21082e82e8a37796ec34e59d6d5a7cd236d058ce04101f22ab23a73ca8e220cd33c61615562ccaae8a1393a84fc9f99121b510371020400010001"
  17.     },
  18.     {
  19.         "dga_seed": 0xC129388E,
  20.         "dga_count": 50,
  21.         "hardcoded_domains": ["revivalresumed.com"],
  22.         "botnet": "client",
  23.         "port": 443,
  24.         "rc4_key": "fenquyidh",
  25.         "md5_salt": "45Bn99gT",
  26.         "rsa_key": "30818902818086547a4502a8676b8d2a4ae0fd7adedd16c792fd44c9ffc0d87f52e8497359139998079cb17ceb317257a21df465a62f6e3388556d4d558b9c345b0b9acf5a4c7e34327ee5a4986ba479a5e21082e82e8a37796ec34e59d6d5a7cd236d058ce04101f22ab23a73ca8e220cd33c61615562ccaae8a1393a84fc9f99121b510371020400010001"
  27.     },
  28.     {
  29.         "dga_seed": 0x5CC61F58,
  30.         "dga_count": 50,
  31.         "hardcoded_domains": ["nanohapharle.com"],
  32.         "botnet": "client",
  33.         "port": 443,
  34.         "rc4_key": "fenquyidh",
  35.         "md5_salt": "45Bn99gT",
  36.         "rsa_key": "30818902818086547a4502a8676b8d2a4ae0fd7adedd16c792fd44c9ffc0d87f52e8497359139998079cb17ceb317257a21df465a62f6e3388556d4d558b9c345b0b9acf5a4c7e34327ee5a4986ba479a5e21082e82e8a37796ec34e59d6d5a7cd236d058ce04101f22ab23a73ca8e220cd33c61615562ccaae8a1393a84fc9f99121b510371020400010001"
  37.     },
  38.     {
  39.         "dga_seed": 0x14D0683E,
  40.         "dga_count": 50,
  41.         "hardcoded_domains": ["firstcrypttestingfree.com"],
  42.         "botnet": "client-2",
  43.         "port": 443,
  44.         "rc4_key": "fenquyidh",
  45.         "md5_salt": "45Bn99gT",
  46.         "rsa_key": "30818902818086547a4502a8676b8d2a4ae0fd7adedd16c792fd44c9ffc0d87f52e8497359139998079cb17ceb317257a21df465a62f6e3388556d4d558b9c345b0b9acf5a4c7e34327ee5a4986ba479a5e21082e82e8a37796ec34e59d6d5a7cd236d058ce04101f22ab23a73ca8e220cd33c61615562ccaae8a1393a84fc9f99121b510371020400010001"
  47.     },
  48.     {
  49.         "dga_seed": 0xE8FFBC20,
  50.         "dga_count": 20,
  51.         "hardcoded_domains": ["programcomponent.com"],
  52.         "botnet": "italian",
  53.         "port": 443,
  54.         "rc4_key": "fenquyidh",
  55.         "md5_salt": "45Bn99gT",
  56.         "rsa_key": "308189028180ba3c4e0c61219d82b47c43e4b479f533ecc0896d4e6d68757e38b0a3020dc0fefd713b9fa7b9ed645a39ab2c240519489992980c1e998e12d0461f3962582d2a9c103789eb30c88ee35b8085ae587d6c7e65f95b4b3e795a34c5aef31e7de56376c2fbdc2a62df4ecf7a6b389ff8560d7fd101c3707740ff7815a74b6a354231020400010001"
  57.     }
  58. ]
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement