Advertisement
one32

2020-03-30 Ursnif(Dreambot) infection chain using RIGEK

Mar 30th, 2020
244
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.90 KB | None | 0 0
  1. <Date>
  2. 2020-03-30
  3.  
  4. <Subject>
  5. Ursnif(Dreambot) infection chain using RIGEK via Malvertising target Japan
  6.  
  7. <Compromised>
  8. makemoneyeazzywith.me
  9.  
  10. <RIG Landing>
  11. 109.68.213.130
  12.  
  13. <Smokeloader C2>
  14. bealkian.today
  15. ferymspaniumryou.today
  16. offwhiteoallrightou.today
  17. tophundretgoods.today
  18.  
  19. <Ursnif Payload C2/MD5>
  20. girlaina.fun
  21. 6A0D71295E1F71A2F7FA7EB4DA12C0CA
  22.  
  23. <Ursnif(Dreambot)C2 Domain>
  24. alfabanjrrd.agency
  25. bsberbakh.agency
  26. cdastroitod.today
  27. cmguffiong.today
  28. dampometiktd.today
  29. dstopdaltdsd.agency
  30. glmrakobesad.agency
  31. ilupitdrope4.agency
  32. lbusinesd.agency
  33. lkakaushkid.agency
  34. lostellazikdht.today
  35. lotlybankied.agency
  36. mozetradugis.today
  37. nlembdasd.agency
  38. pikazanhsd.agency
  39. schepsdik.today
  40. slaungdt.today
  41. sstrousihhsd.agency
  42. ssvetleitef.today
  43. stanetvsemxs.today
  44. stkraevoirdslf.today
  45. tasinhromiidw3.agency
  46. ymulenrougas.agency
  47.  
  48. <Config>
  49. soft=3
  50. version=214131
  51. server=12
  52. id=4011
  53. crc=1
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement