Advertisement
G0dR4p3

Shade_Ransomware_IOCs_29-01-2019

Jan 29th, 2019
193
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.71 KB | None | 0 0
  1. #Shade #Troldesh #Ransomware
  2. -----------------------------------
  3. 29-01-2019 IOC's
  4. -----------------------------------
  5. Main object- "b57d0f4ae43dea847afdeda01eb4d0cffb9635562109d8cd2c46a55421111961.bin.gz"
  6. sha256 3f6d879ce654e663cc3bb7a10b82ecdf23eea100c9465b9cc5d1ca2d7d286f15
  7. sha1 eb15f25b7cd50d8b6a7fc67a5f432f4a4d426c1e
  8. md5 9792edb09a91d4dd7078aecfe72e802d
  9. Dropped executable file
  10. sha256 C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9ZEWH8D\messg[1].jpg dfaa49c45c94ed1e0f333bf36aba29b525ceaa7ccb8be1928a16c579e2de4706
  11. DNS requests
  12. domain magiwebsa.com
  13. Connections
  14. ip 67.227.157.98
  15. ip 131.188.40.189
  16. ip 208.83.223.34
  17. ip 154.35.32.5
  18. ip 76.73.17.194
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement