--------------------------------------- DNS Maliciosos Malware --------------------------------------- tarra26.duckdns.org envio25-05.duckdns.org guaricha.ydns.eu comienzo.ydns.eu tutaina.duckdns.org envionewrat2.duckdns.org envionuevo001000.mysynology.net germanballesteros90208090.duckdns.org datesnewenvio1.kozow.com britsygomez9090101212.duckdns.org 0306sendrat.duckdns.org germanballesteros90202233.duckdns.org dnsdervdffggh.mysynology.net --------------------------------------- C2 - Comando y Control de Malware --------------------------------------- 45.225.135.22:50002 172.111.139.76:8848 178.16.52.10:207 172.111.139.22:3001 172.111.139.221:8848 172.111.139.49:8848 192.159.99.21:8050 192.159.99.21:5080 54.234.18.200:5080 18.230.113.220:9945 45.178.181.107:8826 192.159.99.21:5080 128.90.115.172:7014 181.235.14.94:3588 128.90.103.94:2404 --------------------------------------- SHA 256 - Archivos Maliciosos --------------------------------------- 05b06d00a478bb716da785b8bee743b3a98359117bd5d900dcea84e09acd9994 06fd71d3945b637858945eb15f1e283851207e9097b163db25b541766dbc35d9 101e60c10c8daa6a38aa69603a849d1b1e1ee2ccbf3f938aad03ca58d0c35204 196b51b18eab8d733f76c21eb1b320e92ef0bec032d6e6d99ea05e1d1fb8dc7e 25a761a38f05dc67c898eb44498592573f3de76407f5f383ea6c8e995d6ba07d 3e6923b99ffd77d8a80263a4f88576484101da3ee6bec24b16f7cab99d9d0ddf 4e58400ac0ed6766737498140b64c5afcd7b204bd30bc3b035cba35cc6a900f0 54f248655ee0daa366f707c5c8c88e6f6092238d60ab7eb16809bd975cce850d 580a8e8a3149c00d2f325e51dcbb7d91ef78afdfbc2ac739188d0085497de8cd 6836755137610acf18096f07a58cc053d85627971a30ac7ef73dd18034454fb0 7a2b5bbe1282a460027df858fb28b1b24f37ce056dd474de1e408cdfa9f5e726 7b14f77dc92575dd2ff8913d77fba87f8c679c12400c086afe38be02585a60c4 7e065e68168b23bd2e919ca5fe2ca3ec9740d5e6b0839bb390f1ba623a1680d0 8e1c2f50d00bc120a87e585ef35b19f66c8250af22003728818b4e6962094195 971e06994a04521e2e593d060b7db8a5974646a858dc46cbb6f18a0162a3bd80 b33a7a2d511b1afa6d2e7d8a112fcf8ffb7c5ee1edd1329fcd0e4515157b6c2c d72b958801e33a5dececf2a0f6d888ad1d48e560c9e63ba9d5722e1f8d10e0e2 2f6eefc6ff1b230f4571c5fca0876523bdeef24b31468fcd30f2f59756a4d1bf ddb789699be4882121db3a914b2372f9519701f825b7f47e48b875ea011485be 9c64e6a6362cde84b0ce3238465bfd890102019ddb698ff74f2c14f540ee42fa 73f0e2c44bdef66ea8c329fa80cc7568901674e103be0b9d94a07e1862f100aa 2e41eafc6bc5a672797aac2e07b7710d86ea73294fa70c51b38753d13ef559bf 3f9bcbe830accad4fb7de80d6f4d6d3cf1dbadcc2af363ee3c39fb0ce109024c 42ec89a6305b86a785e9ae35f5c7043f870994bbd46272d42b34ba39d8ae8939 4b3caca8fcda7bb514e844d24fe3c92085126c3c0d19aa04e9b414e81f263e12 92862c960e360465b214da3dddf6be5cd119ee5fb69c9f0e71caf9344f507d91 9773f4474592aab405ac60ef20181b5711785b11dd43acdb74964f4f201323ce 9e5baf95de01da70e6bd7fec503e0ade1bf5abc27d42153e147d4865a902fea1 a4cc07282801a72261399baf13347216b85c105190a25560c8f0676367d24cd7 b9392ec5c7dbfa0c0eceb2dfeadc9b52b84f7b1b1fc33a666ef4fc4babd15ea4 d0d085b1f5f33269742d7210d34290027b117a2025567fc4d0c4f3cd8316b8eb d5841d68a1bc97ced6c0f631927ef557f30c8358b5baeecb8d0601ebf2cac1c1 e7e587af4028a23fe2c23064b0886123ab5f9cb945660fa74abb5f43ca255d78 eb58f2aabe41f36edff02f16bc3dbd7f6b3bb533d16bfcf673cca5159e96bdba ef7b441e5375d648d304192230ad2cd03421bf47ceae069669392c42931d9002 f52d23da1d7e1129cd1baf178f697df83250ae9db7c4b233baa5f7264878c95f 1a224d95dee69eaee37f831f1ef13c0fe84c0e7373829f502b935404521c2ef9 79d6cacfafe2ad4fd349bd6f8867f70aecfa8a6d281544650b150887f103eb79 8608a4e38647ad58151795a5acb9553baed7acc6821fe318bccf5aed93f1be1f 90b8f20436ae2e828a15d2abcb78e77f2c46ece55182b01d6a457d50437195f1 ac6385a5f99210ceb146b08c3315ef909e657373ad9d609c6b09aaaa13b39781 1cf602b86a8b8bebf39da3ccdfef35f0f022cdef3a8866a88f38e5ae08d52584 bbffc4c0e6f786b7d29ad0420e5b2bf68bc201327229ab2fc2598b6241fda735 164502191bcc13888e116a33f4477bdb06daeb05ab0704c5b448dddcd9403a21 03ccc90a0f2072a8d86ebda4d499095167b6d0c9a950ca08a6c4baf43d4fa59c b223820781fea64f235a3f8ae4274790a4b00147c9b5b1cf04005d884b7c4253 4f4e8962dce5fc44ee56bb1886130501166dcaa8b646e0e6daaaab470171b3ec d46c0fe7074d3cb22de6bf5b7259a71af2a6b6095994e0eca041a75e5b7ba06c bf60c0f3d70448d82ead768b496fffdfe589a510928e652ce35f11dd575dbe4e 80bcaf96d7324fa143940253adcbf0e1d2cf55c1dbba1152e25b2c94917429ee