Advertisement
vk_intel

2018-12-12: ISFB v215 -> Dridex "3101"

Dec 13th, 2018
534
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.66 KB | None | 0 0
  1. MD5 (2018-12-11.isfbv215.loader.unpacked.vk.exe) = 5414320c660404a63163d0994b30c299
  2.  
  3.  
  4. Bot ['2.15']
  5. Build ['165']
  6. Botnet/Group ID ['3152', '3153']
  7. DGA TLDs ['com', 'ru', 'org']
  8. Server [’12’]
  9. Encryption key ['10291029JSJUYNHG']
  10. DGA CRC ['0x4eb7d2ca']
  11. DGA Base URL ['constitution.org/usdeclar.txt']
  12. Domains ['biesbetiop.com', 'kircherche.com', 'toforemedi.com']
  13. Path: ['/images/']
  14.  
  15.  
  16. Dridex "3101"
  17. Dridex First-Layer
  18. ============================
  19. 174.34.253.11:443
  20. 141.255.166.182:443
  21. 192.48.88.177:443
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement