ExecuteMalware

2020-10-16 ZLoader IOCs

Oct 16th, 2020
3,595
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.14 KB | None | 0 0
  1. THREAT ATTRIBUTION: ZLOADER
  2.  
  3. SUBJECTS OBSERVED
  4. Invoice 1059 info
  5. Invoice notice
  6. Invoice, No # 1960
  7. Receipt id 8496
  8. September Unpaid Invoice - # 6046
  9. Statement reminder No. #5986
  10. This is your Service Invoice
  11.  
  12. SENDERS OBSERVED
  13.  
  14. EXCEL FILE HASHES
  15. ca35d6fcc0fbca62279839a353c5e394
  16. 71773b664a42ac606442f1ef82020d51
  17. f7cca79084195fb7458e2ef75f01aeee
  18. 411bdb6fd1707fbf131d1ce48509db6a
  19. 244ddf7615055331b9bdaa202b3a3889
  20. 9a6b96a0ad8234b50be186f18e90216a
  21.  
  22. ZLOADER PAYLOAD HASHES
  23. N/A
  24.  
  25. ZLOADER PAYLOAD URLs
  26. https://arifulhuq.com/7aops3.php
  27. https://ashraydekho.com/x9tity.php
  28. https://biotantra.info/qbqkew.php
  29. https://breaktalks.com/fsq48c.php
  30.  
  31. arifulhuq.com
  32. ashraydekho.com
  33. biotantra.info
  34. breaktalks.com
  35.  
  36. ZLOADER C2s
  37. https://acpdd.cat/sv34fs.php
  38. https://aestheticscc.com/wbbako/php
  39. https://procalterfineb.tk/wp-smarts.php
  40. https://reach-me.co/oay1hk.php
  41. https://rkhydraulic.com/gqvvjx.php
  42. https://sadarpursangbad.com/eraksa.php
  43. https://t20group.com/atufik.php
  44. https://voldemarholding.ee/b6h7s1.php
Add Comment
Please, Sign In to add comment