Advertisement
G0dR4p3

Pterodo_Backdoor_IoC's_02-09-2019

Sep 2nd, 2019
283
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.78 KB | None | 0 0
  1. #Pterodo #Backdoor #Trojan
  2. -----------------------------
  3. 02-09-2019
  4. -----------------------------
  5. Main object- "49243f52ea56a3624f6fee8a2f7a916d0b97eb4fd08de760440be108439d52c9.bin.gz"
  6. sha256 e20898fc9e691fb8bd4788d53d380efa4fd5bfbc7d78b5b4720c9ba3646e4872
  7. sha1 36cc4ea06cc1b1da02c3b95756f3a807a96a803b
  8. md5 2bf8d2a23705af43b4f4f3680bfe90e8
  9. Dropped executable file
  10. sha256 C:\Users\admin\Desktop\49243f52ea56a3624f6fee8a2f7a916d0b97eb4fd08de760440be108439d52c9.bin 49243f52ea56a3624f6fee8a2f7a916d0b97eb4fd08de760440be108439d52c9
  11. sha256 C:\Users\admin\AppData\Roaming\23623.txt a48ad33695a44de887bba8f2f3174fd8fb01a46a19e3ec9078b0118647ccf599
  12. DNS requests
  13. domain kornet-ua.ddns.net
  14. Connections
  15. ip 188.225.24.161
  16. HTTP/HTTPS requests
  17. url http://kornet-ua.ddns.net/
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement