malware_traffic

Malware_traffic's Pastebin

96,504 472,959 6 years ago
Name / Title Added Expires Hits Syntax  
2020-04-08: OneDrive links to zip archives for Qak... Apr 9th, 2020 Never 2,699 None -
URLs from VT on 2020-04-08 for Qakbot/Qbot zip arc... Apr 8th, 2020 Never 3,262 None -
Trickbot EXE files from ".png" URLs on W... Apr 1st, 2020 Never 2,036 None -
2020-03-30 - malspam pushing kpot stealer Mar 30th, 2020 Never 2,633 None -
2020-03-17 - FedEx themed malspam pushes Dridex Mar 18th, 2020 Never 2,605 None -
Trickbot EXE files from ".png" URLs on M... Mar 16th, 2020 Never 1,555 None -
Trickbot EXE files from ".png" URLs on W... Mar 4th, 2020 Never 1,524 None -
Trickbot EXE files from ".png" URLs on W... Feb 26th, 2020 Never 2,233 None -
Trickbot EXE files from ".png" URLs on W... Feb 19th, 2020 Never 2,219 None -
Trickbot EXE files from ".png" URLs on T... Feb 6th, 2020 Never 2,663 None -
2020-02-03 - malspam with attachment for Emotet ep... Feb 3rd, 2020 Never 3,450 None -
2020-02-03 - Malspam pushing Qbot (Qakbot) Feb 3rd, 2020 Never 3,360 None -
Trickbot EXE files from .png URLs on Monday 2020-0... Feb 3rd, 2020 Never 2,022 None -
Trickbot EXE from .png URLs on Monday 2020-01-27 Jan 27th, 2020 Never 1,729 None -
2020-01-27 - Hancitor malspam example 2 of 2 Jan 27th, 2020 Never 1,948 None -
2020-01-27 - Hancitor malspam example 1 of 2 Jan 27th, 2020 Never 1,397 None -
2020-01-10: URLs for Trickbot seen from IcedID-inf... Jan 10th, 2020 Never 1,517 None -
Info so far: Malware Traffic workshop for BSides T... Jan 8th, 2020 Never 1,703 None -
Trickbot EXE from .png URLs on Wednesday 2020-01-0... Jan 8th, 2020 Never 1,410 None -
Trickbot EXE from .png URLs as of Monday 2020-01-0... Jan 6th, 2020 Never 1,913 None -
2020-01-03 - Word docs with macros (Ostap) possibl... Jan 3rd, 2020 Never 645 None -
Trickbot EXE from .png URLs as of Thursday 2019-12... Dec 26th, 2019 Never 1,833 None -
Trickbot EXE from .png URLs as of Thursday 2019-12... Dec 19th, 2019 Never 1,047 None -
Trickbot EXE from .png URLs - Friday 2019-12-06 Dec 6th, 2019 Never 1,169 None -
Trickbot EXE from .png URLs as of Wed 2019-12-04 Dec 5th, 2019 Never 943 None -
Trickbot EXE from .png URLs - Tues 2019-12-03 Dec 3rd, 2019 Never 1,378 None -
2019-12-02 - Hancitor info Dec 2nd, 2019 Never 1,476 None -
Trickbot EXE from .png URLs - Thursday 2019-11-28 Nov 28th, 2019 Never 1,678 None -
Trickbot EXE from .png URLs - Tuesday 2019-11-26 Nov 26th, 2019 Never 1,288 None -
Trickbot EXE from .png URLs - Monday 2019-11-25 Nov 25th, 2019 Never 824 None -
Trickbot EXE from .png URLs - Monday 2019-11-18 Nov 18th, 2019 Never 996 None -
Trickbot EXE from .png URLs - Friday 2019-11-15 Nov 15th, 2019 Never 1,269 None -
Trickbot EXE files seen from .png URLs on 2019-10-... Oct 29th, 2019 Never 1,691 None -
2019-10-09 - Hancitor acitivity Oct 9th, 2019 Never 1,844 None -
2019-10-03 - Netsupport RAT malspam campaign Oct 4th, 2019 Never 1,562 None -
2019-09-30 - Info from malspam pushing Shade ranso... Sep 30th, 2019 Never 1,300 None -
2019-09-30 - example of malspam pushing Shade rans... Sep 30th, 2019 Never 352 None -
Trickbot EXE files seen from .png URLs on 2019-09-... Sep 25th, 2019 Never 979 None -
2019-09-13 - Malspam pushing Shade ransomware Sep 13th, 2019 Never 2,076 None -
2019-09-03 - Malspam with password-protected Word... Sep 3rd, 2019 Never 6,977 None -
2019-08-28 - File info from today's Ursnif in... Aug 28th, 2019 Never 1,544 None -
2019-08-26 - files from Ursnif infection with Tric... Aug 26th, 2019 Never 1,634 None -
2019-08-22: Trickbot EXEs associated with IcedID (... Aug 22nd, 2019 Never 2,115 None -
2019-08-22 - info on malspam pushing Shade ransomw... Aug 22nd, 2019 Never 1,824 None -
2019-08-22 - malspam pushing Shade (Troldesh) rans... Aug 22nd, 2019 Never 616 None -
2019-08-21 - malspam pushing Shade (Troldesh) rans... Aug 21st, 2019 Never 1,432 None -
2019-08-21 - malspam pushing Shade (Troldesh) - 2... Aug 21st, 2019 Never 269 None -
2019-08-21 - malspam pushing Shade (Troldesh) - 1... Aug 21st, 2019 Never 264 None -
2019-08-19 - Trickbot binaries, "the PNGs&quo... Aug 20th, 2019 Never 1,418 None -
2019-08-12 - Trickbot EXEs from URLs ending with .... Aug 12th, 2019 Never 1,122 None -
IcedID (Bokbot)-related Trickbot binaries seen on... Aug 12th, 2019 Never 1,213 None -
2019-07-30 - Trickbot binaries, "the PNGs&quo... Jul 30th, 2019 Never 927 None -
File hashes from Hancitor infection on Monday 2019... Jul 22nd, 2019 Never 1,589 None -
2019-06-25 and 06-26 - Malspam pushing Trickbot (g... Jun 26th, 2019 Never 2,310 None -
2019-06-20 - malspam pushing Nanocore RAT Jun 20th, 2019 Never 1,185 None -
2019-06-13 - Malspam with XLS attachment Jun 13th, 2019 Never 1,220 None -
2019-05-30 - PASSWORD-PROTECTED WORD DOCS FROM MAL... May 30th, 2019 Never 1,652 None -
2019-05-28 - EXAMPLE OF EMOTET MALSPAM (2 OF 2) May 29th, 2019 Never 2,057 None -
2019-05-28 - EXAMPLE OF EMOTET MALSPAM (1 OF 2) May 29th, 2019 Never 2,159 None -
2019-05-20 - malspam pushing Lokibot May 20th, 2019 Never 1,497 None -
2019-05-02 - Emotet malspam example May 2nd, 2019 Never 1,879 None -
2019-04-24 - Emote malspam example Apr 24th, 2019 Never 1,976 None -
New password-protected docs in malspam since 2018-... Apr 19th, 2019 Never 1,413 None -
2019-04-19 - malspam pushing Danabot Apr 19th, 2019 Never 881 None -
2019-04-16 - Trickbot malspam - gtag: sat43 Apr 16th, 2019 Never 1,249 None -
2019-04-15 - Lokibot malspam example Apr 15th, 2019 Never 2,188 None -
2019-04-04 - Example of Emotet malspam Apr 4th, 2019 Never 1,756 None -
2019-04-03 - Hancitor malspam example Apr 3rd, 2019 Never 1,272 None -
2019-04-01 - Active URLs for Emotet Apr 1st, 2019 Never 1,120 None -
2019-03-25 - Rig EK landing page from 79.174.13.20 Mar 25th, 2019 Never 1,425 None -
2019-03-18 - malspam pushing Trickbot (gtag: ono1) Mar 18th, 2019 Never 913 None -
2019-03-14 - Info on Trickbot malspam wave Mar 14th, 2019 Never 1,380 None -
2019-03-14 - Trickbot malspam example (gtag day2) Mar 14th, 2019 Never 1,082 None -
2019-03-14 - Malware from password-protected Word... Mar 14th, 2019 Never 926 None -
2019-03-12 - Qakbot EXE sent to Emotet-infected Wi... Mar 12th, 2019 Never 914 None -
2019-03-11 - Example of malspam pushing Trickbot g... Mar 11th, 2019 Never 933 None -
2019-03-11 - Malspam pushing Trickbot - gtag: day2 Mar 11th, 2019 Never 1,569 None -
2019-03-05 and 06: malware from malspam pushing Ur... Mar 6th, 2019 Never 704 None -
2019-03-05 - Trickbot inject module name tied to g... Mar 5th, 2019 Never 851 None -
2019-03-04 - #Emotet #malspam example Mar 4th, 2019 Never 1,250 None -
2019-03-04 - malspam pushes Hawkeye keylogger/info... Mar 4th, 2019 Never 585 None -
2019-02-28 - Hancitor malspam example Feb 28th, 2019 Never 1,134 None -
2019-02-26 - Malware from Hancitor infection Feb 26th, 2019 Never 712 None -
2019-02-26 - Example of malspam pushing Hancitor Feb 26th, 2019 Never 1,113 None -
2019-02-25 - Example of malspam pushing Hancitor Feb 25th, 2019 Never 1,050 None -
2019-02-25 - malware from Hancitor infection Feb 25th, 2019 Never 649 None -
2019-02-21 - Example of malspam pushing Hanctor Feb 21st, 2019 Never 1,470 None -
2019-02-14 - Emotet malspam example with download... Feb 14th, 2019 Never 1,517 None -
2019-02-14 - Recent Trickbot weirdness Feb 14th, 2019 Never 2,229 None -
2019-02-14 - Malspam using password-protected Word... Feb 14th, 2019 Never 3,470 None -
2019-02-14 - Malspam uses Dropbox link to push For... Feb 14th, 2019 Never 2,923 None -
2019-02-13 - Hancitor malspam example Feb 13th, 2019 Never 1,182 None -
2019-02-13 - Emotet malspam example with PDF attac... Feb 13th, 2019 Never 1,282 None -
2019-02-12 - Emotet malspam example with PDF attac... Feb 12th, 2019 Never 1,896 None -
2019-02-12 - malware from Hancitor infection Feb 12th, 2019 Never 1,181 None -
2019-02-12 - Hancitor malspam (USPS theme) Feb 12th, 2019 Never 1,461 None -
2019-02-09 - Fake Updates campaign pushes Chthonic Feb 8th, 2019 Never 1,279 None -
Since 2019-02-04 - Trickbot EXEs as PNG: Sin, Tin,... Feb 8th, 2019 Never 1,346 None -
2019-02-08 (Friday) - Trickbot malspam (gtag: sat3... Feb 8th, 2019 Never 1,138 None -
2019-02-05 - Trickbot malspam - gtag: ser0205us Feb 5th, 2019 Never 1,709 None -