malware_traffic

Malware_traffic's Pastebin

120,450 536,609 6 years ago
Name / Title Added Expires Hits Syntax  
2020-12-09 (Wednesday) - TA551 (Shathak) Word docs... Dec 9th, 2020 Never 2,245 None -
2020-12-07 (Monday) - TA551 (Shathak) Word docs wi... Dec 7th, 2020 Never 2,220 None -
2020-12-02 (Wednesday) through 2020-12-03 (Thursda... Dec 4th, 2020 Never 3,149 None -
2020-11-30 (Monday) TA551 (Shathak) Word docs with... Nov 30th, 2020 Never 2,363 None -
2020-11-25 (Wednesday) TA551 (Shathak) Word docs w... Nov 25th, 2020 Never 1,344 None -
2020-11-24 (Tuesday) - TA551 (Shathak) Word docs w... Nov 24th, 2020 Never 2,288 None -
2020-11-23 (Monday) - ZLoader infection with follo... Nov 23rd, 2020 Never 2,126 None -
2020-11-16 - Fake FedEx email Nov 16th, 2020 Never 1,851 None -
2020-11-11 (Wednesday) - IcedID from myResume.xlsb Nov 11th, 2020 Never 3,061 None -
2020-11-11 (Wed) - Qakbot-style spreadsheets with... Nov 11th, 2020 Never 2,444 None -
Attachment passwords from TA551 (Shathak) malspam Nov 10th, 2020 Never 1,608 None -
2020-11-06 (Friday) - malspam pushing Formbook Nov 6th, 2020 Never 1,418 None -
2020-11-05 (Thursday) - TA551 (Shathak) Japanese-t... Nov 4th, 2020 Never 2,129 None -
2020-11-04 (Wednesday) - TA551 (Shathak) Japanese-... Nov 4th, 2020 Never 1,947 None -
2020-11-03 (Tuesday) - TA551 (Shathak) Japanese-te... Nov 3rd, 2020 Never 1,365 None -
2020-10-29 (Thursday) - TA551 (Shathak) Japanese l... Oct 29th, 2020 Never 1,890 None -
2020-10-28 (Wednesday) - TA551 (Shathak) Japanese... Oct 29th, 2020 Never 1,871 None -
2020-10-27 (Tuesday) - TA551 (Shathak) Japanese-la... Oct 27th, 2020 Never 2,141 None -
2020-10-27 (Tuesday) - Hancitor with Cobalt Strike... Oct 27th, 2020 Never 3,198 None -
2020-10-20 (Tuesday) - TA551 (shathak) Word docs p... Oct 21st, 2020 Never 1,611 None -
2020-10-15 (Thursday) - BazaLoader from Google Doc... Oct 15th, 2020 Never 2,183 None -
2020-10-14 (Wednesday) - TA551 (Shathak) Word docs... Oct 14th, 2020 Never 2,203 None -
2020-10-14 (Wednesday) - Emotet malspam example Oct 14th, 2020 Never 1,826 None -
2020-10-07 (Wednesday) - TA551 (shathak) Word docs... Oct 7th, 2020 Never 2,253 None -
2020-10-07 (Wednesday) - Malspam with XLSX attachm... Oct 7th, 2020 Never 2,277 None -
2020-10-05 (Monday) - Qakbot (Qbot) abc013 Oct 5th, 2020 Never 2,399 None -
2020-10-05 (Monday) DHL-themed malspam pushes Drid... Oct 5th, 2020 Never 2,234 None -
2020-09-30 - Qakbot malspam example Sep 30th, 2020 Never 2,114 None -
2020-09-23 (Wednesday) TA551 (Shathak) Word docs p... Sep 23rd, 2020 Never 2,128 None -
2020-09-21 (Monday) TA551 (Shathak) Word docs push... Sep 21st, 2020 Never 1,910 None -
2020-09-17 (Thursday) TA551 (Shathak) Word docs pu... Sep 17th, 2020 Never 2,970 None -
2020-09-16 (Wednesday) TA551 (Shathak) Word docs p... Sep 16th, 2020 Never 2,734 None -
2020-09-15 - BazarLoader malware from Google Docs... Sep 15th, 2020 Never 2,736 None -
2020-09-11 (Friday) - myResume.xls pushes ZLoader... Sep 11th, 2020 Never 2,338 None -
2020-09-11 (Friday) TA551 (Shathak) Word docs push... Sep 11th, 2020 Never 2,214 None -
2020-09-10 (Thursday) TA551 (Shathak) Word docs pu... Sep 10th, 2020 Never 2,319 None -
2020-09-08 (Tuesday) TA551 (Shathak) Word docs pus... Sep 8th, 2020 Never 2,336 None -
2020-08-20 - Notes on recent TA551 (shathak) activ... Aug 20th, 2020 Never 2,200 None -
2020-08-20 (Thursday) - TA551 (Shathak) word docs... Aug 20th, 2020 Never 2,852 None -
2020-08-18 (Tuesday) - Emotet malspam example Aug 18th, 2020 Never 1,097 None -
2020-08-17 (Monday) - TA551 (shathak) Word docs wi... Aug 17th, 2020 Never 3,568 None -
2020-08-11 (Tuesday) - TA551 (shathak) Word docs w... Aug 11th, 2020 Never 4,071 None -
2020-08-10 (Monday) TA551 (shathak) Word docs with... Aug 10th, 2020 Never 5,437 None -
2020-08-05 - "Campaign 56" on amazonaws Aug 5th, 2020 Never 7,762 None -
2020-08-03 (Monday) - Qakbot (Qbot) spx147 Aug 3rd, 2020 Never 12,098 None -
2020-07-30 (Thursday) - TA551 (Shathak) Word docs... Jul 30th, 2020 Never 10,062 None -
2020-07-28 - Password-protected XLS pushes ZLoader Jul 28th, 2020 Never 8,195 None -
2020-07-28 (Tuesday) - TA551 word docs pushing Ice... Jul 28th, 2020 Never 9,547 None -
2020-07-27 (Monday) - TA551 Word docs push IcedID... Jul 27th, 2020 Never 9,041 None -
2020-07-24 (Friday) TA551 word docs with macros fo... Jul 24th, 2020 Never 13,017 None -
2020-07-23 (Thursday) - TA551 word docs with macro... Jul 23rd, 2020 Never 14,135 None -
2020-07-22 (Wed) - Password-protected XLS files pu... Jul 22nd, 2020 Never 7,598 None -
2020-07-21 (Tuesday) - Word docs pushing IcedID (B... Jul 21st, 2020 Never 6,286 None -
2020-07-21 (Tuesday) - Emotet infection with Qakbo... Jul 21st, 2020 Never 6,577 None -
2020-07-20 (Monday) Word docs with macros for Iced... Jul 20th, 2020 Never 5,692 None -
2020-07-17 (Friday) - Word docs with macros for Ic... Jul 20th, 2020 Never 4,865 None -
2020-07-17 - Password-protected XLS files Jul 17th, 2020 Never 4,751 None -
2020-07-16 (Thursday) - Word docs with macros for... Jul 16th, 2020 Never 2,383 None -
2020-07-16 - Hancitor infection with an info-steal... Jul 16th, 2020 Never 1,555 None -
2020-07-15 (Wednesday) - Word docs pushing IcedID Jul 16th, 2020 Never 2,692 None -
2020-07-15 - XLS files for Hancitor Jul 15th, 2020 Never 1,877 None -
2020-07-08 - Trickbot gtag chil61 from XLS macros Jul 8th, 2020 Never 2,048 None -
2020-06-30 (Tues) - Valak (soft_sig: mas37) info Jun 30th, 2020 Never 2,839 None -
2020-06-24 (Wednesday): Valak activity - Soft_sig:... Jun 24th, 2020 Never 2,654 None -
2020-06-23 - Valak (soft_sig: mad34) activity Jun 23rd, 2020 Never 1,958 None -
2020-06-22 - Valak (mad33) infection with IcedID (... Jun 23rd, 2020 Never 1,547 None -
Trickbot propagation URLs on Tuesday 2020-06-23 Jun 23rd, 2020 Never 1,668 None -
Trickbot propagation URLs on Friday 2020-06-19 Jun 19th, 2020 Never 2,052 None -
2020-06-09 - Recent resume-themed malspam attachme... Jun 9th, 2020 Never 1,110 None -
2020-06-03 - Valak (Soft_sig: mad29) Jun 4th, 2020 Never 2,555 None -
Trickbot propagation URLs (and EXEs) on Thursday 2... May 28th, 2020 Never 2,726 None -
2020-05-22 - malspam with zip files pushes Valak w... May 22nd, 2020 Never 3,309 None -
2020-05-19 - Qakbot (Qbot) spx122 zip archive URLs May 19th, 2020 Never 2,849 None -
2020-05-18 - Qakbot (Qbot) zip archive URLs May 18th, 2020 Never 3,484 None -
2020-05-12 - Word docs with macros for Valak May 13th, 2020 Never 2,521 None -
2020-05-06 (Wednesday) - Qakbot (Qbot) spx114 info May 6th, 2020 Never 3,435 None -
2020-05-06 - XLS attachments from malspam pushing... May 6th, 2020 Never 2,725 None -
2020-05-05: Links to zip files for Qakbot spx112 &... May 5th, 2020 Never 2,435 None -
2020-05-04 (Monday) - malspam with XLS file pushin... May 4th, 2020 Never 2,528 None -
2020-05-01 - XLS file w/ macros pushes Loader EXE... May 1st, 2020 Never 2,105 None -
2020-04-30 - Link-based malspam pushing Dridex - 2... Apr 30th, 2020 Never 2,492 None -
2020-04-27 - Malspam with password-protected zip a... Apr 28th, 2020 Never 2,131 None -
2020-04-23 - URLs/hashes for Qakbot (Qbot) spx103... Apr 23rd, 2020 Never 2,931 None -
2020-04-22 - URLs/hashes for Qakbot (Qbot) spx102... Apr 22nd, 2020 Never 2,750 None -
2020-04-21 - URLs/hashes for Qakbot (Qbot) spx101... Apr 21st, 2020 Never 2,216 None -
Trickbot EXE files from ".png" URLs on M... Apr 20th, 2020 Never 3,526 None -
2020-04-20 - URLs/hashes for Qakbot (Qbot) spx100... Apr 20th, 2020 Never 2,712 None -
2020-04-17: Trickbot gtag ono38 from password-prot... Apr 17th, 2020 Never 4,016 None -
2020-04-17 - URLs/hashes for Qakbot (Qbot) spx99 f... Apr 17th, 2020 Never 2,517 None -
2020-04-16 - URLs/hashes for Qakbot (Qbot) spx98 f... Apr 16th, 2020 Never 4,090 None -
2020-04-15 - URLs/hashes for Qakbot (Qbot) spx97 f... Apr 15th, 2020 Never 2,214 None -
2020-04-14 - URLs/hashes for Qakbot (Qbot) spx96 z... Apr 14th, 2020 Never 2,455 None -
2020-04-13 - URLs/hashes for Qakbot (Qbot) spx95 z... Apr 13th, 2020 Never 2,649 None -
Trickbot EXE files from ".png" URLs on F... Apr 10th, 2020 Never 1,836 None -
2020-04-10 - Qakbot (Qbot) spx94 - 30 URLs for zip... Apr 10th, 2020 Never 1,679 None -
2020-04-10 - malpsam pushes GuLodader/NanoCore RAT Apr 10th, 2020 Never 4,771 None -
URLs with "/extend/" for Qakbot (Qbot) s... Apr 10th, 2020 Never 2,019 None -
2020-04-08: OneDrive links to zip archives for Qak... Apr 9th, 2020 Never 3,399 None -
URLs from VT on 2020-04-08 for Qakbot/Qbot zip arc... Apr 8th, 2020 Never 3,779 None -
Trickbot EXE files from ".png" URLs on W... Apr 1st, 2020 Never 2,437 None -

Adblocker detected! Please consider disabling it...

We've detected AdBlock Plus or some other adblocking software preventing Pastebin.com from fully loading.

We don't have any obnoxious sound, or popup ads, we actively block these annoying types of ads!

Please add Pastebin.com to your ad blocker whitelist or disable your adblocking software.

×