2016-03-21 - ANGLER EK DATA DUMP

NOTICE:

ASSOCIATED FILES:

 

ASSOCIATED DOMAINS

ANGLER EK:

TESLACRYPT POST-INFECTION TRAFFIC:

BEDEP POST-INFECTION DOMAINS:

CLICK-FRAUD TRAFFIC AFTER THE BEDEP INFECTION:

 

IMAGES


Shown above:  Traffic from the infections filtered in Wireshark.

 


Shown above:  Start of pseudo-Darkleech injected script in page from first compromised website.

 


Shown above:  Injected script in page from second compromised website.

 


Shown above:  Start of pseudo-Darkleech injected script in page from third compromised website.

 


Shown above:  Decrypt instructions from TeslaCrypt ransomware samples.

 

Click here to return to the main page.