Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #Pony #Stealer #Malware
- ----------------------------------
- 21-01-2019 IOC's
- ----------------------------------
- Main object- "163c3af91c2b350b437717cb16f3d050e1caf9dd24de9208bf49ed304d3bf57f.bin.gz"
- sha256 a25280ea60f81d926b9118977789be18f14d62f4ea89d309d94856cd301a381e
- sha1 c841ba6521199e6b1393873c1df71ff2a2499889
- md5 406d1ea159c98c3660a725685740743d
- Dropped executable file
- sha256 C:\Users\admin\Desktop\Payment Slip.exe 53baa1bcf35b69a0266576f425a9dd17f24c2b7bb83dc64a2e8d06bd7733c182
- DNS requests
- domain registrofiscal.com.br
- Connections
- ip 104.238.96.144
- HTTP/HTTPS requests
- url http://registrofiscal.com.br/chris/pony/gate.php [OPENDIR]
- url http://registrofiscal.com.br/chris/pony/shit.exe [OPENDIR]
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement