mirror of
https://github.com/valitydev/APT_CyberCriminal_Campagin_Collections.git
synced 2024-11-06 16:55:28 +00:00
16 lines
322 B
Plaintext
16 lines
322 B
Plaintext
Word document with macros (Trojan-Downloader.Script.Generic):
|
|
|
|
e15b36c2e394d599a8ab352159089dd2
|
|
|
|
Dropper from Word document (Backdoor.Win32.Fonten.y):
|
|
|
|
ac2d7f21c826ce0c449481f79138aebd
|
|
|
|
Final payload from Word document (Backdoor.Win32.Fonten.o):
|
|
|
|
3fa9130c9ec44e36e52142f3688313ff
|
|
|
|
BlackEnergy C&C Server:
|
|
|
|
5.149.254[.]114
|