PULSE NAME
DarkGate Malware Analysis, Overview by ANY.RUN
WHITE burtcha15 2024-01-25 Modified: 2024-02-24
71
IOCs
HIGH VOLUME
DarkGate is a malicious software developed and developed by a group of Russian hackers, who are believed to be planning to launch a major cyber-attack in the next few months, if they want to steal money.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Adwind Remote Access Agent Tesla Amadey Arkei DarkGate WarZone RAT
Indicators of Compromise (71)
All URL FileHash-MD5 FileHash-SHA1 FileHash-SHA256 domain
TYPEINDICATORDESCRIPTIONCREATED
URL http://annoyingannoying.vodka/ 2024-01-25
FileHash-MD5 db89d7e859719779dc58a25849963712 MD5 of 301158ffb44a9824deeec16bdc7dabdc328b9f3ecde0df048741218285d8bcc8 2024-01-25
FileHash-SHA1 5f120fee54043617f16a04c0d93e761305262a56 SHA1 of 301158ffb44a9824deeec16bdc7dabdc328b9f3ecde0df048741218285d8bcc8 2024-01-25
FileHash-SHA256 301158ffb44a9824deeec16bdc7dabdc328b9f3ecde0df048741218285d8bcc8 2024-01-25
FileHash-MD5 15430669556c2062ceadd5b125e8cea7 MD5 of 64db719c67988b106bf2d1a5b842445e8ff9b6436be28bcaa0b8876d330f8168 2024-01-25
FileHash-MD5 2663243d13ad9a58f973a8299c41df07 MD5 of b79b536569c0060a834e4001289a6700692d67df58e644779fababf0df22fc75 2024-01-25
FileHash-MD5 2989dab1e3196f06c6ac6abb8693f27d MD5 of 2b24c4c883a562d0326846ee1c92840144d1d755cdb721b24a35038ea92aa0e4 2024-01-25
FileHash-MD5 2a9022d42d0a90ca90aec6603ba9ac34 MD5 of 46c785b72c3e85f73e621ca12e1a92bd00ea0153833ed46ad574b0242013a818 2024-01-25
FileHash-MD5 377d8d910f7d6747727ca413967d6395 MD5 of 68952e8c311d1573b62d02c60a189e8c248530d4584eef1c7f0ff5ee20d730ab 2024-01-25
FileHash-MD5 6a7cd884435a911c09c52dbf9ca584fe MD5 of b0648d3e4f8eb5c0c83083be84748e39fffe64aec7bdefc3634193b181935e3d 2024-01-25
FileHash-MD5 882ffa1d00cd122745719464e399e71a MD5 of 761637d44066023ec2207240c658f7a4ada3777f31d653b8a220eb47c754f066 2024-01-25
FileHash-MD5 9303156631ee2436db23827e27337be4 MD5 of bae22f27c12bce1faeb64b6eb733302aff5867baa8eed832397a7ce284a86ff4 2024-01-25
FileHash-MD5 99b098b23ced1a199145fe5577c9de91 MD5 of 8979e74303550e257eb92225507bf2fb128cebde5f3f6e36b4236e822e194f64 2024-01-25
FileHash-MD5 f242ce468771de8c7a23568a3b03a5e2 MD5 of 0f1545a7176c45b0e7f9198cac8972167e5846e8b84cd40926f7edf338eeace2 2024-01-25
FileHash-SHA1 018e0d5b6ccf7000e36af30cebeb8adc5667e5fa SHA1 of bae22f27c12bce1faeb64b6eb733302aff5867baa8eed832397a7ce284a86ff4 2024-01-25
FileHash-SHA1 1d1fef713894ee6fe308c8cdf93506f0d7b2ada5 SHA1 of 0f1545a7176c45b0e7f9198cac8972167e5846e8b84cd40926f7edf338eeace2 2024-01-25
FileHash-SHA1 2110af59fdbda55712811ca610fa140c2de6e070 SHA1 of 2b24c4c883a562d0326846ee1c92840144d1d755cdb721b24a35038ea92aa0e4 2024-01-25
FileHash-SHA1 276c5f36876a783a01ef10b9df39fa0efe3e296a SHA1 of 64db719c67988b106bf2d1a5b842445e8ff9b6436be28bcaa0b8876d330f8168 2024-01-25
FileHash-SHA1 36aa20471f41b5814e3c1436cd0de3396267a623 SHA1 of 68952e8c311d1573b62d02c60a189e8c248530d4584eef1c7f0ff5ee20d730ab 2024-01-25
FileHash-SHA1 510e24071b2dfae548db6c062a44e056208d8fea SHA1 of 46c785b72c3e85f73e621ca12e1a92bd00ea0153833ed46ad574b0242013a818 2024-01-25
FileHash-SHA1 806bd3cc90326bac8fae1e93498060aa64df643b SHA1 of b0648d3e4f8eb5c0c83083be84748e39fffe64aec7bdefc3634193b181935e3d 2024-01-25
FileHash-SHA1 84031f7b3c97759d56b14591e1cf0ba1f552f201 SHA1 of 8979e74303550e257eb92225507bf2fb128cebde5f3f6e36b4236e822e194f64 2024-01-25
FileHash-SHA1 98eb199f3cff1f979c656620630c0325037ae6d8 SHA1 of 761637d44066023ec2207240c658f7a4ada3777f31d653b8a220eb47c754f066 2024-01-25
FileHash-SHA1 be11963f1105cf95da88cf81a29c4870d0232251 SHA1 of b79b536569c0060a834e4001289a6700692d67df58e644779fababf0df22fc75 2024-01-25
FileHash-SHA256 0f1545a7176c45b0e7f9198cac8972167e5846e8b84cd40926f7edf338eeace2 2024-01-25
FileHash-SHA256 2824b4f5365025f5b0cb2bc956c2a46336fde086e0d56625d50375b6374251c8 2024-01-25
FileHash-SHA256 2b24c4c883a562d0326846ee1c92840144d1d755cdb721b24a35038ea92aa0e4 2024-01-25
FileHash-SHA256 46c785b72c3e85f73e621ca12e1a92bd00ea0153833ed46ad574b0242013a818 2024-01-25
FileHash-SHA256 4c324a8f0f395dc9a69854ec9c3917ac2bc9809a7a585c8b0c0e786f02a564d8 2024-01-25
FileHash-SHA256 64db719c67988b106bf2d1a5b842445e8ff9b6436be28bcaa0b8876d330f8168 2024-01-25
FileHash-SHA256 68952e8c311d1573b62d02c60a189e8c248530d4584eef1c7f0ff5ee20d730ab 2024-01-25
FileHash-SHA256 761637d44066023ec2207240c658f7a4ada3777f31d653b8a220eb47c754f066 2024-01-25
FileHash-SHA256 7fc3126b9c53816657076b62188f9905067ec4b070deea5999cd6d7aa3c85c76 2024-01-25
FileHash-SHA256 8979e74303550e257eb92225507bf2fb128cebde5f3f6e36b4236e822e194f64 2024-01-25
FileHash-SHA256 8a88083a6168893eae13e60aed817aae6342bd84c66c95dc0e2e8d5054a8885d 2024-01-25
FileHash-SHA256 93b2ff7f3570b4d91283027e41cbf1ce1f1f3b452d739a66c112612c664d9672 2024-01-25
FileHash-SHA256 b0648d3e4f8eb5c0c83083be84748e39fffe64aec7bdefc3634193b181935e3d 2024-01-25
FileHash-SHA256 b79b536569c0060a834e4001289a6700692d67df58e644779fababf0df22fc75 2024-01-25
FileHash-SHA256 bae22f27c12bce1faeb64b6eb733302aff5867baa8eed832397a7ce284a86ff4 2024-01-25
FileHash-SHA256 c17d11aee8e1bb6d556849b44670b002c4df26dd141fdac36fd60f6b58d629f1 2024-01-25
FileHash-SHA256 c36f35e271e0e7c345ca701c782605a2f899aa6f30f13d06ab7541244c8a8229 2024-01-25
FileHash-SHA256 ca2af2316629b492968b1ccd2548bd4031d6722b726bac694f00380cd320b510 2024-01-25
URL http://185.130.227.202/ 2024-01-25
URL http://5.188.87.58/ 2024-01-25
URL http://80.66.88.145/ 2024-01-25
URL http://80.85.152.122/ 2024-01-25
URL http://87.106.16.115:9061/ 2024-01-25
URL http://89.248.193.66/ 2024-01-25
URL http://89.248.193.66:2351/ 2024-01-25
URL http://94.228.169.143/ 2024-01-25
URL http://cheneseemeg7575.cash/ 38ffd4972ae513a0c79a8be4573403edcd709f0f572105362b08ff50cf6de521 2024-01-25
URL http://getldrrgoodgame.com/ 2024-01-25
URL http://hgfdytrywq.com/ 2024-01-25
URL http://prestige-castom.com/ 2024-01-25
URL http://saintelzearlava.com/ 2024-01-25
URL http://taochinashowwers.com/ 2024-01-25
URL http://trans1ategooglecom.com/ 2024-01-25
URL http://uiahbmajokriswhoer.net/ 3c8cc37a98346bd0123b35e5ccd87bd07d69914dae04f8b49f61c150d96e9d1f 2024-01-25
URL http://vintagecarsforlife.com/ 2024-01-25
URL http://zochao.com/ 2024-01-25
domain annoyingannoying.vodka 2024-01-25
domain cheneseemeg7575.cash 2024-01-25
domain getldrrgoodgame.com 2024-01-25
domain hgfdytrywq.com 2024-01-25
domain prestige-castom.com 2024-01-25
domain saintelzearlava.com 2024-01-25
domain taochinashowwers.com 2024-01-25
domain trans1ategooglecom.com 2024-01-25
domain uiahbmajokriswhoer.net 2024-01-25
domain vintagecarsforlife.com 2024-01-25
domain zochao.com 2024-01-25