MalwareMustDie's Pastebin

Malware Crusade Battlefield - Near C2    84,746 332,199 6 years ago
Name / Title Added Expires Hits Syntax  
Grey stuff: TDS Used Landing Page JS Code Feb 23rd, 14 Never 372 JavaScript -
Page replacement..hard way to inject.. Feb 22nd, 14 Never 344 Java -
Iframer JS Injection Feb 22nd, 14 Never 451 JavaScript -
CookieBomb pad Feb 22nd, 14 Never 385 JavaScript -
And another Perl DDoS Shell Bot Feb 21st, 14 Never 932 Perl -
PerlBot Remote Downloader Feb 21st, 14 Never 481 Perl -
Another PerlBot Shell Feb 21st, 14 Never 659 Perl -
CookieBomb v2 - First Cushion Cookie Flow Step by ... Feb 20th, 14 Never 696 Java -
Kuluoz Reversing "QUICK" Notes Feb 14th, 14 Never 465 ASM (NASM) -
Hacked Site with the US IRC Server'S Perl ShellBot Feb 12th, 14 Never 1,012 Perl -
#MalwareMustDie - Decoding Kelihos Simda download ... Feb 10th, 14 Never 742 JavaScript -
Have a "xmlrpc.php" & GooDork for Br... Feb 6th, 14 Never 664 XML -
Phishing AMEX Script (neutralized) Feb 5th, 14 Never 933 JavaScript -
Codes and Decodes: Cracks of the Traffer and Malve... Feb 1st, 14 Never 337 JavaScript -
Blah!! New ESD.php Server Side Infector Logic Jan 31st, 14 Never 551 JavaScript -
CookieBomb v2 | the 2nd cushion: Google.JS Jan 29th, 14 Never 419 JavaScript -
A wtf suspicious TDS.. Jan 27th, 14 Never 552 None -
CookieBomb Case Jan 2014 Jan 22nd, 14 Never 624 JavaScript -
Forensics Data - PowerLocker $str(MemDumps) Jan 17th, 14 Never 391 None -
#Nuclear EK infection domain chains.. Jan 16th, 14 Never 335 None -
#Simda Payload callbacks Traffic (origin: Kelihos ... Jan 16th, 14 Never 286 None -
#Cridex Trojan Infection IP Source per Jan 17 2014 Jan 16th, 14 Never 846 None -
Trojan/PWS Win32/Cridex RETURNS Jan 15th, 14 Never 617 None -
FUD Kelihos Jan 14th, 14 Never 278 None -
Kuluoz - Latest Version | Binary DUMP Analysis Jan 14th, 14 Never 489 None -
#MMD Crime Investigation 20140108-001 Jan 8th, 14 Never 764 mIRC -
qqq.inc.php PHP Hacks aimed DDoS & Windows Rem... Jan 5th, 14 Never 614 PHP -
Shadow Logger Registry Trace in Memory Dump (foren... Jan 2nd, 14 Never 860 None -
Shadow Logger Process Record Jan 2nd, 14 Never 404 None -
Shadow Logger PE Strings Jan 2nd, 14 Never 732 None -
#MMD Tango Down 311/2,989 Dec 2nd, 13 Never 406 None -
Analysis of the suspected Linux DDoS backdoor Tool Nov 14th, 13 Never 1,795 None -
SURBL CryptoLocker Nov 13th, 13 Never 456 None -
BOTNET KULUOZ/ ASPROX BACK WITH NEW EXCYPTION Nov 12th, 13 Never 403 None -
Injection Code to .PL Redirected Spam sites.. Nov 11th, 13 Never 465 JavaScript -
Nuclear EK Landing Page in Japan serves Citadel Nov 8th, 13 Never 235 JavaScript -
FaceBook IM & Web Driven Facebook Trojan with ... Nov 7th, 13 Never 481 JavaScript -
#MalwareMustDie - Abandoned infected site w/ Aband... Nov 6th, 13 Never 1,412 JavaScript -
#MalwareMustDie - MORE Zbot Trojans UP and ALIVE Nov 5th, 13 Never 294 None -
#MalwareMustDie! ZEUS links that needed to nuke down: Nov 5th, 13 Never 305 None -
#MalwareMustDie - #PoC of HOW Kelihos Infecting vi... Nov 5th, 13 Never 302 None -
#MalwareMustDie! Zombie PCs used by Botnet & M... Nov 4th, 13 Never 448 None -
The cracking of 709days used by RunForrestRun DGA Nov 2nd, 13 Never 322 JavaScript -
DGA (PseudoRandom Domain) RunForrestRun, Decoding ... Nov 2nd, 13 Never 324 JavaScript -
#MalwareMustDie! Zeus Variant Payloads Oct 30th, 13 Never 365 None -
#malwareMustDie - The #w00tw00t Attack log Oct 20th, 13 Never 692 Apache Log -
YAra rule: Citadel Oct 15th, 13 Never 416 None -
#ESD.PHP REDIRECTOR UNLEASHED | Server Side's Code Oct 5th, 13 Never 1,065 PHP -
#MalwareMustDie! Peeking at Recent Blackhole via I... Sep 19th, 13 Never 349 None -
#MalwareMustDie! Black Proxies Bad Guys Using Sep 3rd, 13 Never 6,009 None -
KELIHOS MALWARE DETECTION RATIO - BY AV SCANNING A... Aug 31st, 13 Never 380 None -
Kelihos TODAY's IP - In Detail Version: 2,189 Aug 15th, 13 Never 1,134 None -
I found these.. Aug 13th, 13 Never 353 None -
OP CleanUp Kelihos, CN: Polandia/Polska Aug 13th, 13 Never 426 None -
OP CleanUp Kelihos, CN: Japan Aug 13th, 13 Never 346 None -
OP CleanUp Kelihos, CN: Romania Aug 13th, 13 Never 350 None -
OP CleanUp Kelihos, CN: Russia Aug 13th, 13 Never 555 None -
OP CleanUp Kelihos, CN: USA Aug 13th, 13 Never 732 None -
OP CleanUp Kelihos, CN: India Aug 13th, 13 Never 274 None -
#MalwareMustDie - Kelihos Botnet IP Aug 11, 2013 t... Aug 11th, 13 Never 15,891 None -
#MalwareMustDie - Kelihos Botnet IP AUg 11, 2013 Aug 11th, 13 Never 214 None -
#MalwareMustDie! Kelihos BotNet IP TOTAL Aug 10th ... Aug 10th, 13 Never 3,408 None -
Chekcing Latest Kelihos .COM domains sinkhole status Aug 10th, 13 Never 309 None -
#MalwareMustDie! Last milking today, sorted unique... Aug 10th, 13 Never 178 None -
MalwareMustDie! Kelihos BotNet IPs #3 | Aug 10th 2013 Aug 9th, 13 Never 1,130 None -
Kelihos Hit US IP.. Aug 9th, 13 Never 245 None -
#MalwareMustDie! Kelihos BotNet IP-2 Aug 10th 2013 Aug 9th, 13 Never 1,044 None -
#MalwareMustDie - Log of Report of ANOTHER 2 Kelih... Aug 9th, 13 Never 116 None -
#MalwareMustDie - Log of Report of 2 more Kelihos ... Aug 9th, 13 Never 196 None -
#MalwareMustDie! Kelihos BotNet IP Aug 10th 2013 Aug 9th, 13 Never 702 None -
#MalwareMustDie - Log of Report of 8 more Kelihos ... Aug 9th, 13 Never 287 None -
New Kelihos IP milked from new domain: OFCIWOX.COM Aug 9th, 13 Never 357 None -
#MalwareMustDie! Kelihos IP Address for CLEAN-UPS Aug 8th, 13 Never 333 None -
#MalwareMustDie! 623 Kelihos IP Address for CLEAN-UPS Aug 8th, 13 Never 156 None -
DAVUJUZ.COM DNS CACHE CHECKS Aug 7th, 13 Never 130 None -
#MalwareMustDie! Monitoring INTERNET.BS base Kelih... Aug 6th, 13 Never 437 None -
#MalwareMustDie! Kelihos Affiliated .COM Payload D... Aug 6th, 13 Never 112 None -
#MalwareMustDie - UPDATE: Tango status of RunForre... Aug 6th, 13 Never 173 PHP -
#MawareMustDie Kelihos IP Milked in UNIX Aug 5th, 13 Never 172 None -
#MalwareMustDie- #Kelihos .RU domains Status Today Aug 5th, 13 Never 178 None -
#MalwareMustDie! #Kelihos NS Spreader Aug 5th, 13 Never 107 None -
#MMD #UPDATE: Additional Kelihos Payload URL 100 d... Aug 2nd, 13 Never 360 PHP -
#malwareMustDie! Credential slurp by trojan/PWS/ F... Aug 2nd, 13 Never 310 None -
#MalwareMustDie! REproduction redirector to Glazuk... Aug 1st, 13 Never 317 HTML -
#MalwareMustDie! FINAL Hexed decoded redirector to... Aug 1st, 13 Never 242 PHP -
#MalwareMustDie! Hexed DEcodeD code to Glazukov EK Aug 1st, 13 Never 230 PHP -
#MalwareMustDie! Hexed code of injection code to G... Aug 1st, 13 Never 156 None -
#MalwareMustDie! The POC lsit of ALIVE Zbot Jul 30th, 13 Never 615 None -
#MalwareMustDie! New form of Neutrino EK landing p... Jul 26th, 13 Never 445 JavaScript -
Exploit Kit JNLP Calls + Cookie Check + Java ver. ... Jul 26th, 13 Never 215 None -
Suspected Kelihos ALive domain IP Addresses (Addit... Jul 25th, 13 Never 248 None -
#MalwareMustDie! #ALERT: Kelihos IP & Domains ... Jul 19th, 13 Never 238 None -
#MalwareMustDie! Kelihos payload URL via RedKit EK Jul 16th, 13 Never 191 None -
*.MSI.COM got hacked, redirected to TDS to EK Jul 15th, 13 Never 231 None -
#MalwareMustDie! #RedKit Infection Campaign /[a-z]... Jul 13th, 13 Never 155 None -
#MalwareMustDie! ZERODAY of EXPLOIT KIT & EVIL... Jul 11th, 13 Never 718 None -
Today's Pony/zbot GO Jul 11th, 13 Never 188 None -
#MalwareMustDie! Kuluoz CnC list Jul 8th, 13 Never 529 None -
#MalwareMustDie! In war with Kuluoz network.. Jul 7th, 13 Never 2,539 None -
#MalwareMustDie! Kuluoz #Botnet CnC Unleashed (#Ta... Jul 4th, 13 Never 1,283 None -
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
Not a member of Pastebin yet?
Sign Up, it unlocks many cool features!
 
Top