Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- GROUPS BEHIND “BANLOAD” BANKING MALWARE IMPLEMENT NEW TECHNIQUES
- Indicators of Compromise (IOCs)
- Golang Loader (MD5):
- bd73f690fb9479ccfacad8cc3d36f002
- 64-bit Driver (MD5):
- ef4048de1c678045520815c932e73f56
- PDB: F:\Sistema\Drivers-Denis\FileDelete\FileDelete\x64\Debug\B.pdb
- 32-bit Driver (MD5):
- f54c335c5024cfa43c4673f3c99209b2
- PDB: F:\Sistema\Drivers-Denis\FileDelete\FileDelete\Debug\B.pdb
- Targeted Software
- #Sample 1
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportAegle64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportHades64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportKE64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
- C:\Program Files\Trusteer\Rapport\bin\RapportAegle.sys
- C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys
- C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys
- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
- C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
- C:\Program Files\AVAST Software\Avast\AvastUI.exe
- C:\Program Files\AVAST Software\Avast\AvLaunch.exe
- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
- C:\Program Files\AVG\Antivirus\AvEmUpdate.exe
- C:\Program Files\AVG\Antivirus\AVGUI.exe
- C:\Program Files\AVG\Antivirus\AvLaunch.exe
- #Sample 2
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportAegle64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportHades64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportKE64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys
- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
- C:\Program Files\Trusteer\Rapport\bin\RapportAegle.sys
- C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys
- C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys
- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
- C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
- C:\Program Files\AVAST Software\Avast\AvastUI.exe
- C:\Program Files\AVAST Software\Avast\AvLaunch.exe
- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
- C:\Program Files\AVG\Antivirus\AvEmUpdate.exe
- C:\Program Files\AVG\Antivirus\AVGUI.exe
- C:\Program Files\AVG\Antivirus\AvLaunch.exe
- C:\Program Files\scpbrad\scpbradserv.exe
- C:\Program Files\scpbrad\scpbradguard.exe
- C:\Program Files\scpbrad\scpncmpsg.dll
- C:\Program Files (x86)\scpbrad\scpbradserv.exe
- C:\Program Files (x86)\scpbrad\scpbradguard.exe
- C:\Program Files (x86)\scpbrad\scpncmpsg.dll
Add Comment
Please, Sign In to add comment