Skip to content

Instantly share code, notes, and snippets.

@ANeilan
Created April 28, 2020 17:48
Show Gist options
  • Save ANeilan/d67950ae5459272b47830703b4bb6a31 to your computer and use it in GitHub Desktop.
Save ANeilan/d67950ae5459272b47830703b4bb6a31 to your computer and use it in GitHub Desktop.
stuff i found from last nights certstream data during my shift
URL Domain IP Address Threat Actor Email(s)
http://airasiaexpress.icu/jpmc/ airasiaexpress.icu 178.159.36.51 N/A
http://allnepaltrekking.icu/Financial/afzz.zip allnepaltrekking.icu * 178.159.36.137 boxoffice794@gmail.com
http://anaboliccooking.icu/document/Adobe%20PDF%20.zip anaboliccooking.icu 178.159.36.53 alanking105@gmail.com
http://anaboliccooking.icu/officedocuments/office3652019%20(2).zip anaboliccooking.icu 178.159.36.52 alanking105@gmail.com
http://aoeasians.tk/Doc/box_v4_invoice%20(Trap).zip aoeasians.tk 192.210.199.68 zaddy6040@aol.com
http://aoeasians.tk/Match/match.zip aoeasians.tk 192.210.199.69 highbee300@yahoo.com
http://asiandyansty.gq/file/invoice.zip asiandyansty.gq 192.210.199.70 theboy1372@gmail.com
http://asiandyansty.ml/secure/dropnow.zip asiandyansty.ml 192.210.199.71 medocompany700@gmail.com
http://autopartsmanager.icu/Firstbank2.zip autopartsmanager.icu 178.159.36.51 zate123man@gmail.com,pronc@prontomail.com
http://bakachod.xyz/surcfcdd/wellsfargo-update(1).zip bakachod.xyz 178.159.36.138 youngboss0@protonmail.com,robbinmaxwell101@gmail.com
http://bareatioms.club/doc.zip bareatioms.club 162.241.67.232 kboy04566@aol.com,jjude0456@gmail.com,otb2505@gmail.com
http://bomtosedesa.ml/earthlink.zip bomtosedesa.ml 185.244.39.21 yellowkid@cock.li
http://cidraprecisionservices.top/Firstbank2.zip cidraprecisionservices.top 91.234.99.190 zate123man@gmail.com,pronc@prontomail.com
http://clickthedate.top/admin/office365.zip clickthedate.top 178.159.36.137 j.1u1s@yandex.ru,jamestanner2299@gmail.com
http://clickthedate.top/data/Update365.zip clickthedate.top 178.159.36.138 jamestanner2299@gmail.com
http://clickthedate.top/file/Update365.zip clickthedate.top 178.159.36.139 jamestanner2299@gmail.com
http://clickthedate.top/input/office365.zip clickthedate.top 178.159.36.140 j.1u1s@yandex.ru,jamestanner2299@gmail.com
http://dirtoffyourshoulder.icu/Firstbank2.zip dirtoffyourshoulder.icu 178.159.36.51 zate123man@gmail.com,pronc@prontomail.com
http://document-sharepoints.ml/office/invoice/365%20(2).zip document-sharepoints.ml * 178.159.36.82 spiritswonder77@yandex.com
http://exploitationnation.icu/oneddrive.zip exploitationnation.icu 178.159.36.51 newresultboxway@yandex.com
http://feverscanning.icu/admin/office365.zip feverscanning.icu 178.159.36.51 j.1u1s@yandex.ru,jamestanner2299@gmail.com
http://feverscanning.icu/data/Update365.zip feverscanning.icu 178.159.36.52 jamestanner2299@gmail.com
http://feverscanning.icu/file/office365.zip feverscanning.icu 178.159.36.53 jamestanner2299@gmail.com
http://financeyourdegree.top/sharepoint%20(2).zip financeyourdegree.top 178.159.36.137 creativelmpv@gmail.com
http://getdmgratisdi.resmi91.tk/SC%20CODASHOP%20GG%20V.1%20(PulberAja)%20(0).zip getdmgratisdi.resmi91.tk 89.47.165.172 pulberaja5@gmail.com
http://getdmnyadi.resmi91.tk/SC%20CODASHOP%20GG%20V.1%20(PulberAja)%20(0).zip getdmnyadi.resmi91.tk 89.47.165.172 pulberaja5@gmail.com
http://gleneaglehome.icu/aaa/sharepoint/ gleneaglehome.icu 178.159.36.137 N/A
http://healthcarethatworks.top/3___3___3___3___3___3___3%20(2)%20(1)%20(1).zip healthcarethatworks.top 91.234.99.221 neversaynever2324@yandex.com
http://inspiredigitalmedia.icu/AL/mfile%20(2).zip inspiredigitalmedia.icu 178.159.36.137 victorialove0955@gmail.com
http://justharvestusa.top/Firstbank2.zip justharvestusa.top 91.234.99.190 zate123man@gmail.com,pronc@prontomail.com
http://littleartstudios.icu/wp-mail/office-3D8.zip littleartstudios.icu 178.159.36.137 sheezie47@gmail.com
http://mediceducation.icu/emiworld/drop%20b.zip mediceducation.icu * 178.159.36.51 jonseenllees@gmail.com
http://mediceducation.icu/NetNote1%20web.zip mediceducation.icu * 178.159.36.51 backupbox212@gmail.com
http://mixtapegods.icu/ggg/sharepoint/ mixtapegods.icu 178.159.36.137 N/A
http://mobilelegendgrupmabar.xxzx19.tk/GrupmabarML2019-PHISING%20(SFILE.MOBI).zip mobilelegendgrupmabar.xxzx19.tk 173.249.1.171 email-lo@gmail.com / arjunagaming0@gmail.com (SOA)
http://officedocs-pdf.ml/paid/sharpont.zip officedocs-pdf.ml 178.159.36.82 officeuse@yandex.com,belchermark40@gmail.com,office.99@aol.com
http://officedocs-pdf.ml/vp/365%20new.zip officedocs-pdf.ml 178.159.36.82 office.99@aol.com,officeuse@yandex.com,belchermark40@gmail.com
http://onpillssups.cf/voicemail/Office-BG.zip onpillssups.cf * 192.210.199.68 morelawson@yandex.com
http://onpillssups.gq/sharepoint-D7.zip onpillssups.gq 192.210.199.68 goldenson0011@gmail.com
http://opensocietyindy.icu/sharepoint%20(2).zip opensocietyindy.icu 178.159.36.51 absrosen890@gmail.com
http://passengertremendous.xyz/rice/onedriveGT.zip passengertremendous.xyz 178.159.36.172 ahmedwire2015@gmail.com
http://smartlifetrick.icu/admin/office365.zip smartlifetrick.icu 178.159.36.51 darthlordd72@gmail.com
http://smartlifetrick.icu/prologged/office365.zip smartlifetrick.icu 178.159.36.51 darthlordd72@gmail.com
http://smartlifetrick.icu/prorder/office365.zip smartlifetrick.icu 178.159.36.51 darthlordd72@gmail.com
http://snoorkersnow.top/yahoo/ys2019.zip snoorkersnow.top 178.159.36.138 maxoutputdb@gmail.com,maxoutputdb@hotmail.com
http://sofincsolutions.top/admin/office365.zip sofincsolutions.top 91.234.99.221 j.1u1s@yandex.ru,jamestanner2299@gmail.com
http://sofincsolutions.top/data/Update365.zip sofincsolutions.top 91.234.99.222 jamestanner2299@gmail.com
http://sofincsolutions.top/input/office365.zip sofincsolutions.top 91.234.99.223 j.1u1s@yandex.ru,jamestanner2299@gmail.com
http://sofincsolutions.top/quote/Update365.zip sofincsolutions.top 91.234.99.224 jamestanner2299@gmail.com
http://sunnahfoundation.icu/sharepoint%20(2).zip sunnahfoundation.icu 178.159.36.51 absrosen890@gmail.com
http://thecouponstock.icu/bnb.zip thecouponstock.icu 178.159.36.137 zate123man@gmail.com
http://thelearninguniversity.icu/19-20-21/OneDrive%20Updated.zip thelearninguniversity.icu 178.159.36.137 stevenmurdoch@yandex.com / yoglive2@gmail.com
http://therapycream.icu/Firstbank2.zip therapycream.icu 178.159.36.51 zate123man@gmail.com,pronc@prontomail.com
http://topbrokersrealty.icu/Covid19Update/MSth%20Office%20(2).zip topbrokersrealty.icu 178.159.36.137 soljohn075@gmail.com
http://webuyinlandempire.icu/projectmanagement/mfile3/ webuyinlandempire.icu 178.159.36.51 N/A
http://wildernesscreek.icu/bnb.zip wildernesscreek.icu 178.159.36.137 zate123man@gmail.com
http://williamscomputers.icu/doc/0nfile.zip williamscomputers.icu 178.159.36.137 getshorry2@gmail.com
http://yoursavingsflyer.top/Pipe/Archive/ yoursavingsflyer.top 91.234.99.188 N/A
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment