mirror of
https://github.com/CyberMonitor/APT_CyberCriminal_Campagin_Collections
synced 2024-06-30 19:01:40 +00:00
16 lines
322 B
Plaintext
16 lines
322 B
Plaintext
![]() |
Word document with macros (Trojan-Downloader.Script.Generic):
|
||
|
|
||
|
e15b36c2e394d599a8ab352159089dd2
|
||
|
|
||
|
Dropper from Word document (Backdoor.Win32.Fonten.y):
|
||
|
|
||
|
ac2d7f21c826ce0c449481f79138aebd
|
||
|
|
||
|
Final payload from Word document (Backdoor.Win32.Fonten.o):
|
||
|
|
||
|
3fa9130c9ec44e36e52142f3688313ff
|
||
|
|
||
|
BlackEnergy C&C Server:
|
||
|
|
||
|
5.149.254[.]114
|