Source: 4.2.rundll32.exe.300000.0.raw.unpack |
Malware Configuration Extractor: Qbot {"C2 list": ["78.63.226.32:443", "197.51.82.72:443", "193.248.221.184:2222", "95.77.223.148:443", "71.199.192.62:443", "77.211.30.202:995", "80.227.5.69:443", "77.27.204.204:995", "81.97.154.100:443", "173.184.119.153:995", "38.92.225.121:443", "81.150.181.168:2222", "90.65.236.181:2222", "83.110.103.152:443", "73.153.211.227:443", "188.25.63.105:443", "89.137.211.239:995", "202.188.138.162:443", "98.173.34.212:995", "87.202.87.210:2222", "195.12.154.8:443", "47.217.24.69:6881", "182.48.193.200:443", "108.160.123.244:443", "96.57.188.174:2222", "45.118.216.157:443", "84.72.35.226:443", "172.115.177.204:2222", "86.236.77.68:2222", "82.127.125.209:990", "176.181.247.197:443", "97.69.160.4:2222", "90.101.117.122:2222", "189.223.201.91:443", "140.82.49.12:443", "2.7.69.217:2222", "83.110.12.140:2222", "85.132.36.111:2222", "197.45.110.165:995", "149.28.99.97:995", "45.63.107.192:2222", "149.28.98.196:2222", "149.28.99.97:2222", "144.202.38.185:443", "149.28.99.97:443", "45.63.107.192:443", "45.63.107.192:995", "144.202.38.185:2222", "149.28.101.90:995", "149.28.101.90:2222", "149.28.101.90:8443", "45.32.211.207:8443", "149.28.98.196:995", "149.28.98.196:443", "45.32.211.207:995", "149.28.101.90:443", "207.246.77.75:443", "45.77.115.208:8443", "207.246.77.75:995", "207.246.77.75:2222", "45.32.211.207:2222", "45.32.211.207:443", "45.77.115.208:995", "144.202.38.185:995", "45.77.115.208:2222", "207.246.116.237:8443", "207.246.116.237:2222", "207.246.77.75:8443", "207.246.116.237:995", "207.246.116.237:443", "45.77.117.108:443", "45.77.117.108:995", "45.77.117.108:8443", "45.77.117.108:2222", "45.77.115.208:443", "89.3.198.238:443", "2.232.253.79:995", "73.25.124.140:2222", "136.232.34.70:443", "157.131.108.180:443", "217.133.54.140:32100", "195.43.173.70:443", "86.98.93.124:2078", "176.205.222.30:2078", "105.96.8.96:443", "50.29.166.232:995", "27.223.92.142:995", "119.153.62.76:3389", "47.187.115.228:443", "67.6.12.4:443", "65.27.228.247:443", "23.240.70.80:995", "216.201.162.158:443", "139.216.137.189:995", "64.121.114.87:443", "79.129.121.81:995", "172.87.157.235:3389", "75.118.1.141:443", "75.136.26.147:443", "96.250.60.138:443", "50.244.112.106:443", "115.133.243.6:443", "47.196.192.184:443", "45.46.53.140:2222", "105.198.236.101:443", "144.139.166.18:443", "196.151.252.84:443", "71.197.126.250:443", "196.221.207.137:995", "71.117.132.169:443", "74.68.144.202:443", "76.25.142.196:443", "98.240.24.57:443", "144.139. |