diff --git a/International Strategic/Korea/DrillMalware-ioc.MD b/International Strategic/Korea/DrillMalware-ioc.MD index e838f1c..73a207a 100644 --- a/International Strategic/Korea/DrillMalware-ioc.MD +++ b/International Strategic/Korea/DrillMalware-ioc.MD @@ -13,47 +13,85 @@ backdoor C:\Users\user\source\repos\DrillMalware_2018\Release\DrillMalware.pdb http://210.127.189.250/leakage.php + http://210.127.189.251/leakage.php + http://210.127.188.248/leakage.php + http://210.127.188.253/leakage.php + http://210.127.190.117/leakage.php + http://210.127.190.119/leakage.php + http://210.127.190.118/leakage.php + http://210.127.190.116/leakage.php + http://210.127.190.114/leakage.php + http://210.127.188.249/leakage.php + http://www.drill.or.kr/leakage.php + http://210.127.188.249/cnc.txt + http://210.127.190.120/leakage.php + http://210.127.188.248/cnc.txt + http://210.127.188.251/cnc.txt + http://210.127.188.253/cnc.txt + http://210.127.188.250/cnc.txt + http://www.drill.or.kr/cnc.txt + http://210.127.188.244/cnc.txt + http://210.127.188.243/cnc.txt + http://210.127.188.240:8083/welcome.do + http://210.127.188.242/cnc.txt + http://210.127.188.246/cnc.txt + http://210.127.188.245/leakage.php + http://210.127.189.250/cnc.txt + http://210.127.189.251/cnc.txt + http://210.127.188.244/leakage.php + http://210.127.188.242/leakage.php + http://210.127.188.243/leakage.php + http://210.127.188.246/leakage.php + http://210.127.190.122/cnc.txt + http://210.127.190.117/cnc.txt + http://210.127.190.114/cnc.txt + http://210.127.190.115/cnc.txt + http://210.127.190.116/cnc.txt + http://210.127.190.120/cnc.txt + http://210.127.190.118/cnc.txt + http://210.127.190.119/cnc.txt + http://210.127.190.115/leakage.php + http://210.127.190.122/leakage.php -http://210.127.188.245/cnc.txt - - + +http://210.127.188.245/cnc.txt http://210.127.188.245/cnc.txt