Source: 0000000D.00000002.392769153.000000000096A000.00000004.00000020.00020000.00000000.sdmp |
Malware Configuration Extractor: Qbot {"Bot id": "BB31", "Campaign": "1685959443", "Version": "404.1346", "C2 list": ["77.126.99.230:443", "24.234.220.88:465", "151.62.238.176:443", "85.57.212.13:3389", "199.27.66.213:443", "12.172.173.82:21", "12.172.173.82:50001", "12.172.173.82:465", "105.184.209.117:995", "193.80.73.200:995", "86.208.35.220:2222", "93.187.148.45:995", "37.189.89.196:443", "182.75.189.42:995", "65.95.141.84:2222", "84.216.198.201:6881", "105.102.10.220:443", "124.246.122.199:2222", "83.249.198.100:2222", "1.221.179.74:443", "114.143.176.236:443", "174.58.146.57:443", "12.172.173.82:2087", "73.207.160.219:443", "82.36.36.76:443", "86.173.2.12:2222", "92.98.55.221:2222", "223.166.13.95:995", "103.42.86.42:995", "176.133.4.230:995", "70.49.205.198:2222", "81.229.117.95:2222", "92.20.204.198:2222", "183.87.163.165:443", "147.147.30.126:2222", "184.181.75.148:443", "201.244.108.183:995", "94.59.123.30:2222", "184.182.66.109:443", "64.121.161.102:443", "103.140.174.20:2222", "70.28.50.223:3389", "125.63.121.38:2078", "66.241.183.99:443", "50.68.186.195:443", "89.115.200.234:443", "47.205.25.170:443", "12.172.173.82:993", "2.82.8.80:443", "12.172.173.82:22", "93.187.148.45:443", "70.28.50.223:32100", "79.168.224.165:2222", "121.121.108.120:995", "74.12.146.221:2222", "78.159.146.65:995", "116.74.164.17:443", "59.88.174.146:993", "92.184.102.115:2078", "31.53.29.216:2222", "72.205.104.134:443", "116.120.145.170:995", "217.165.233.122:443", "193.253.100.236:2222", "27.0.48.233:443", "103.123.223.133:443", "37.14.229.220:2222", "75.109.111.89:443", "24.234.220.88:995", "92.239.81.124:443", "12.172.173.82:20", "90.29.86.138:2222", "70.160.67.203:443", "92.9.45.20:2222", "95.45.50.93:2222", "100.4.163.158:2222", "201.143.215.69:443", "213.64.33.92:2222", "75.98.154.19:443", "103.139.242.6:443", "103.141.50.43:995", "178.175.187.254:443", "88.126.94.4:50000", "79.77.142.22:2222", "197.2.173.77:443", "74.14.39.7:2222", "70.28.50.223:2083", "174.4.89.3:443", "213.91.235.146:443", "78.130.215.67:443", "24.234.220.88:993", "188.28.19.84:443", "74.12.146.221:2222", "74.12.146.221:2083", "82.131.141.209:443", "70.28.50.223:2087", "24.234.220.88:990", "12.172.173.82:995", "41.227.190.59:443", "192.143.255.159:443", "82.127.153.75:2222", "122.184.143.86:443", "59.28.84.65:443", "103.144.201.48:2078", "103.87.128.228:443", "125.99.69.178:443", "122.186.210.254:443", "74.12.146.221:2083", "190.75.72.44:2222", "123.3.240.16:6881", "176.142.207 |