Skip to content

Commit 8888f4e

Browse files
committed
add iocs for tradingview campaign delivering smokeloader and arkeistealer
1 parent 0d6949d commit 8888f4e

File tree

2 files changed

+21
-0
lines changed

2 files changed

+21
-0
lines changed
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
# SmokeLoader C2
2+
85.208.136[.]162
3+
4+
# ArkeiStealer download URL
5+
212[.]8[.]246[.]70/builds/still[.]exe
6+
212[.]8[.]246[.]70/builds/installer[.]exe
7+
212[.]8[.]246[.]70/builds/bot[.]exe
8+
9+
# Fake TradingView download URL
10+
hxxps://tradingview[.]business/download.php
11+
12+
# Fake TradingView Application Distribution Domain
13+
sxvlww.am.files.1drv.com
Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,8 @@
1+
# ArkeiStealer payload
2+
4d7f538bf21bf0c42fee87d28d3f3079
3+
55552ed60bddd332eee8a23f0494174f
4+
16857afad0b6c40469e5d9d9b63a2927
5+
0743250f8bb1a0baa01affcfd963d171
6+
7+
# Fake TradingView Desktop Application
8+
fc99ea424df48f2b661219b71f33b979

0 commit comments

Comments
 (0)