Smartloader IoCs

This commit is contained in:
SVernin
2025-03-12 11:26:22 +01:00
committed by GitHub
parent fd3756972e
commit 234a8b6bfb
2 changed files with 143 additions and 0 deletions
+7
View File
@@ -0,0 +1,7 @@
Following a recent TrendMicro [investigation](https://www.trendmicro.com/en_us/research/25/c/ai-assisted-fake-github-repositories.html), we have found many GitHub repositories actively delivering SmartLoader. SmartLoader is Lua-written loader distributed since early 2024.
In recent campaigns, threat actors have been creating new GitHub repositories populated with an AI generated README and filled with fake backdated commits. We have also observed the same payloads being distributed via inactive repositories. These repositories are typically forked, with a new release containing SmartLoader ultimately added.
We have uploaded on our [GitHub](https://github.com/cert-orangecyberdefense/cti/tree/main/smartloader) an additional list of IoCs that complements TrendMicro's report.
**Released on 2025-03-12**
+136
View File
@@ -1 +1,137 @@
# Repos Release URLs
https://github.com/kasonsh2450/bananan-shooter-hack-interna-/releases/download/v2.0/Software.zip
https://github.com/BoomerXD69/Amog-OS-LTS/releases/download/v2.0/Software.zip
https://github.com/arthurvill/todolist/releases/download/v1.0/Software.zip
https://github.com/jaydenth/Roblox-Synapse/releases/download/v2.0/Software.zip
https://github.com/mehedihasanfarabi10/githubtutorial/releases/download/v2.0/Software.zip
https://github.com/Trankha2k9/SeedGn/releases/download/v2.0/Software.zip
https://github.com/prakrititz/deepwater/releases/download/v1.0/Software.zip
https://github.com/Jamjam1234927/ETH-MEV-BOT/releases/download/v2.0/Software.zip
https://github.com/btl-ltw/back-end/releases/download/v1.0/Software.zip
https://github.com/Braydon37/m0dmenu-gta5-free/releases/download/v2.0/Software.zip
https://github.com/bryandejesusrt/Reconocimiento-de-placas-con-IA-Bytecoders/releases/download/v2.0/Software.zip
https://github.com/arthurvill/laravel-todos-list-2019/releases/download/v1.0/Software.zip
https://github.com/treyskz/BurstSMS/releases/download/v1.0/Software.zip
https://github.com/huizuohaode/leaf/releases/download/v1.0/Software.zip
https://github.com/BinniZenobioCordovaLeandro/apachimuhkayqui-server/releases/download/v2.0/Software.zip
https://github.com/ColtOSTemp/platform_external_airbnb-lottie/releases/download/v2.0/Software.zip
https://github.com/anisn00/Divided-RPG-Game/releases/download/v1.0/Software.zip
https://github.com/YOSIF9999/Hamster-Clicker/releases/download/v2.0/Software.zip
https://github.com/amandwivedi0/device_xiaomi_santoni/releases/download/v2.0/Software.zip
https://github.com/Oliwier37321/deepseek4free/releases/download/v2.0/Software.zip
https://github.com/guibetancur/Manual/releases/download/v1.0/Software.zip
https://github.com/zelbaqal/gestionCommande/releases/download/v1.0/Software.zip
https://github.com/guibetancur/dom-examples/releases/download/v1.0/Software.zip
https://github.com/hackslash-nitp/Healthcare-web-page/releases/download/v2.0/Software.zip
https://github.com/Kenichi-BOTZ/KeniBotz-MD-UpVERSION/releases/download/v2.0/Software.zip
https://github.com/Kenichi-BOTZ/KeniBotz-MD/releases/download/v2.0/Software.zip
https://github.com/Kenichi-BOTZ/AtlasMDNew/releases/download/v2.0/Software.zip
https://github.com/Kenichi-BOTZ/AtlasMD/releases/download/v2.0/Software.zip
https://github.com/Kenichi-BOTZ/YusupBot1/releases/download/v2.0/Software.zip
https://github.com/Hyaguiin/NUPEX-PI-FASE/releases/download/v1.0/Software.zip
https://github.com/ElectricHermit/skills-introduction-to-github/releases/download/v2.0/Software.zip
https://github.com/zentosph/wisata/releases/download/v2.0/Software.zip
https://github.com/ashwani15upadhyay/Weather-App/releases/download/v1.0/Software.zip
https://github.com/iankuria668/barnes/releases/download/v1.0/Software.zip
https://github.com/iampriam-dev/new/releases/download/v2.0/Software.zip
https://github.com/dath-241/coin-price-be-java/releases/download/v1.0/Software.zip
https://github.com/zentosph/Catatan-Perjalanan/releases/download/v2.0/Software.zip
https://github.com/ToxicAyNone/HWID-Spoofer-and-Cleaner-2024/releases/download/v2.0/Software.zip
https://github.com/zentosph/Aplikasi-Bullying/releases/download/v2.0/Software.zip
https://github.com/zentosph/Aplikasi-Sekolah/releases/download/v2.0/Software.zip
https://github.com/luhxDante/blox-fruits-script/releases/download/v2.0/Software.zip
https://github.com/zentosph/Perbandingan-Harga-Rumah-Sakit/releases/download/v2.0/Software.zip
https://github.com/Genxxen/Swift-Executor/releases/download/v2.0/Software.zip
https://github.com/fredycardenas/AIPromptChat/releases/download/v1.0/Software.zip
https://github.com/uxBorges/kr/releases/download/v1.0/Software.zip
https://github.com/Evil-cyber65/Prem-IG/releases/download/v1.0/Software.zip
https://github.com/Astika08/VAJIRA-MD/releases/download/v2.0/Software.zip
https://github.com/Deadlin560/ComfyUI-Hunyuan3DWrapper/releases/download/v2.0/Software.zip
https://github.com/kanahaza/Email_Filtering_and_Notification_Agent/releases/download/v2.0/Software.zip
https://github.com/narfor502/CucumberBDDFramework/releases/download/v2.0/Software.zip
https://github.com/baomeomeo/speech/releases/download/v2.0/Software.zip
https://github.com/modificarop111/crewai-playground/releases/download/v2.0/Software.zip
https://github.com/Online-eBooks/RIVALS/releases/download/v2.0/Software.zip
https://github.com/Nodiq/TempMail/releases/download/v2.0/Software.zip
https://github.com/Berstarhunter/deepseek-start/releases/download/v2.0/Software.zip
https://github.com/fredycardenas/MonolitoGatling/releases/download/v1.0/Software.zip
https://github.com/SriRamapriyan/SriRamapriyan/releases/download/v1.0/Software.zip
https://github.com/99monisha/100-JS-PROJECTS/releases/download/v1.0/Software.zip
https://github.com/roduz-dev/roduz-dev/releases/download/v1.0/Software.zip
https://github.com/99monisha/protfolio-design/releases/download/v1.0/Software.zip
https://github.com/99monisha/FRONTEND-PAGE-DESIGN/releases/download/v1.0/Software.zip
https://github.com/99monisha/99monisha/releases/download/v1.0/Software.zip
https://github.com/Kenichi-BOTZ/KeniBotz-MDV2/releases/download/v2.0/Software.zip
https://github.com/manuxing/PI--VideoGames/releases/download/v1.0/Software.zip
https://github.com/latyfa2019/Machine-Learning-Web-Apps/releases/download/v1.0/Software.zip
https://github.com/99monisha/land/releases/download/v1.0/Software.zip
https://github.com/99monisha/TCS-CODING/releases/download/v1.0/Software.zip
https://github.com/99monisha/LOVE-BABBAR-DSA-SHEET-CHALLENG/releases/download/v1.0/Software.zip
https://github.com/99monisha/ecom1
https://github.com/guibetancur/Curso.Prep.Henry/releases/download/v1.0/Software.zip
https://github.com/manuxing/deploy-admin/releases/download/v1.0/Software.zip
https://github.com/99monisha/PRACTICE-SET/releases/download/v1.0/Software.zip
https://github.com/99monisha/PATTERN-USING-CPP
https://github.com/manuxing/manuxing/releases/download/v1.0/Software.zip
https://github.com/matimazzia/worldgame-web/releases/download/v1.0/Software.zip
https://github.com/manuxing/musicapp/releases/download/v1.0/Software.zip
https://github.com/guibetancur/html-css-tricks/releases/download/v1.0/Software.zip
https://github.com/vyshnavidevi11/Bookify/releases/download/v2.0/Software.zip
https://github.com/vyshnavidevi11/frtproject/releases/download/v2.0/Software.zip
https://github.com/hermogenesjr/domu/releases/download/v1.0/Software.zip
https://github.com/hermogenesjr/tutorial_git/releases/download/v1.0/Software.zip
https://github.com/TOUNTOLOVER/TOUNTOLOVER/releases/download/v1.0/Software.zip
https://github.com/YTBNuKa/Fixing-Error-0x80070570/releases/download/v2.0/Software.zip
https://github.com/SriRamapriyan/Medicinal-plants-classification/releases/download/v1.0/Software.zip
https://github.com/Theblacksmile0/Dogs-Coin/releases/download/v2.0/Software.zip
https://github.com/Neko-emon/Fixing-Error-0xC000007B/releases/download/v2.0/Software.zip
https://github.com/zandddddddddtttttt/Fixing-Error-0x8007000E/releases/download/v2.0/Software.zip
https://github.com/doodooheadthghhhtuttddfhkkjjggfg/Fixing-Error-0x887A0020/releases/download/v2.0/Software.zip
https://github.com/hannah20190/Fixing-Error-d3dx9-43-dll/releases/download/v2.0/Software.zip
https://github.com/Aya-Salem-ouda/Fixing-Error-0xC000007B/releases/download/v2.0/Software.zip
https://github.com/PhamTaiNo/Fixing-Error-0x80004005-Unspecified/releases/download/v2.0/Software.zip
https://github.com/Fredrick0KK/Fixing-Error-0x80070570/releases/download/v2.0/Software.zip
https://github.com/brian2158/Metflixclone/releases/download/v1.0/Software.zip
https://github.com/Lalovargas69/dado/releases/download/v1.0/Software.zip
https://github.com/frogdogg/Fixing-Error-0x8015DC12/releases/download/v2.0/Software.zip
https://github.com/SamuDark4068/Samuel-Nishimura/releases/download/v2.0/Software.zip
https://github.com/ZidanQawy/PEMINJAMAN-BUKU/releases/download/v2.0/Software.zip
https://github.com/kest77/Fixing-Error-0x80070570/releases/download/v2.0/Software.zip
https://github.com/deathstorm01/UnlockTool-Activated-Version/releases/download/v2.0/Software.zip
https://github.com/emranmonkey/Fixing-Error-0xc0000005/releases/download/v2.0/Software.zip
https://github.com/Mission-Clean-Earth/website/releases/download/v1.0/Application.zip
https://github.com/khanhf-ng820/baotang30-4/releases/download/v1.0/Application.zip
https://github.com/dahoodmans/dahoodmans/releases/download/v1.0/Application.zip
https://github.com/ergin3432432/movie-mates/releases/download/v1.0/Application.zip
https://github.com/Thegoutham1383/Thegoutham1383.github.io/releases/download/v1.0/Application.zip
https://github.com/hungishere/RecipeGenerator/releases/download/v1.0/Application.zip
https://github.com/sahaspatil/PDFMathTranslate-OneClick/releases/download/v1.0/Application.zip
https://github.com/wardansmp/code-vault/releases/download/v1.0/Application.zip
https://github.com/dahoodmans/Spotify-Music-Recommender/releases/download/v1.0/Application.zip
# Release Zip Hashes
082b2d602c39488b7220523cc9d9a03f4cff53bc
23dd00ba88a20d15615f60b587abab56aaf7d830
28b6a72672848e8ee7bbe00c839e899160fed839
414917635afdd6718840e6e689da773f8865e6a7
417cb2ddae3c0e75e67e61f1f11d8fbeb55aff76
419d95885aeafc103ac1123b2d5755562d9c643b
513b39925ab3cb8a97eb76bf81f67ada1bdc4e4c
7367ef2b7836682f248bbc97539e9e9e67d92a20
813f977b8757587529dd1be5709503d2d7071fb5
93aaa11e3531526353707638a462fea991904db8
ae54422e334e0cbcf839955fbe2986a7d886b894
c176528eb230cc5b485a528ec0e2bcc9329ec875
d1c5dffd4dfec12a68b963e53f151dbade8f8e37
ee8240b9cef066bff31da9f72ba32feae27714b8
f11acd444d07ba4322f2b9c9c95bc1e26a03e617
# TXT Hashes (SmartLoader)
1b5865f8998749a1fd61f62e6357d19dedcc9a2c
2a2ef9cd83bdb635bb3da2fe6b6a42c9b0cc657f
a5064f36a48ef1914c62879098bf9d49a58314c5
c36e15f0532569d789ba9fdbfccf6a1bb5ac2c75
cb6152f9fef83f3bd3157aad5e2583c4756bd5a5
cf4d8813d0f000e7ef1913806f055a2c11f08a06