IoC (TT Malware Log)

Malware の IoC(Indicator)情報

◆注意◆ マルウェア解析専析家向けサイト

     FQDN, URL,IPアドレス等はそのまま掲載しています


** Caution ** Malware expert site

                    FQDN, URL, IP address etc. are posted as they are

Panda Banker

【マルウェア】

■ハッシュ情報 (Sha256) - Panda Banker

1cccc844fcdb255f833a9ef36c2d3c690557b828ed5d0a45d068aeb2af1faac7
0fd5413365f474b99f4a49560e20c5e97418d09a2f53e5e7436b88e3f5c16668
a395357a9012b0a4087e0878e7d642877d3b856de53c71cb9805f806dc958264
fa867ddf9f3116da75b62a1bf8007410ac0d3adf7a92e7f3d2effeef982ad73d

(以上は Proofpointの情報: 引用元は https://www.proofpoint.com/us/threat-insight/post/panda-banker-new-banking-trojan-hits-the-market)


■ハッシュ情報 (Sha256) - Document dropping Panda Banker C&C

bdc912caf9b9e078bc7bd331deacae9c460c8e8893442048b9474790c52e1ab9
6dc0bd77e51eb9af143c749539bd638020d557083479bcd4c4b9639fe61eb0f8

(以上は Proofpointの情報: 引用元は https://www.proofpoint.com/us/threat-insight/post/panda-banker-new-banking-trojan-hits-the-market)


■ハッシュ情報 (Sha256) - Zip archive containing most of the samples mentioned

8d381ee21b6cbc7d3ae0e503ab7b05235eb31594d2810e67093c5e9a51437992

(以上は Proofpointの情報: 引用元は https://www.proofpoint.com/us/threat-insight/post/panda-banker-new-banking-trojan-hits-the-market)


【通信先】

■FQDN - Panda Banker C&C

secpressnetwork.com
alwaysonline.pw
denoted-chioces.com

(以上は Proofpointの情報: 引用元は https://www.proofpoint.com/us/threat-insight/post/panda-banker-new-banking-trojan-hits-the-market)


【情報元】

◆Panda Banker: New Banking Trojan Hits the Market (Proofpoint, 2018/04/20)
https://www.proofpoint.com/us/threat-insight/post/panda-banker-new-banking-trojan-hits-the-market