2016-03-15 - ANGLER EK DATA DUMP

NOTICE:

ASSOCIATED FILES:

 

NOTES:

 

ASSOCIATED DOMAINS

GATES:

ANGLER EK:

POST-INFECTION FROM THE TESLACRYPT RANSOMWARE:

 

 

IMAGES


Shown above:  Traffic from the infections filtered in Wireshark.

 


Shown above:  Injected script in page from first compromised site.

 


Shown above:  Start of injected pseudo-Darkleech script in page from second compromised site.

 


Shown above:  Start of injected pseudo-Darkleech script in page from third compromised site.

 


Shown above:  Decrypt instructions from today's TeslaCrypt ransomware samples.

 

Click here to return to the main page.