http://3.135.192.3/5bdd4c2682308e89c0f41628afd29026f70209c80b00cdf38ec9a14945f0f982 http://3.135.192.3/7e6ef21574c6d4d52e600252bc13e0f6a90c8030b30431ca79cbc923897795a6 http://3.135.192.3/642d703ac3a2f6b8679b5bde156d25bd44db587c01b57a705edba983555753a9 http://3.135.192.3/Doc-file.docx http://3.135.192.3/doc.docx http://3.135.192.3/index.html.bak http://3.135.192.3/known-malware.bin http://3.135.192.3/known-malware.sha256 http://3.135.192.3/unknown-malware.sha256 http://3.135.192.3/unknown_malware.bin http://3.135.192.3/DLP/Personal%20Travel%20Information.docx http://3.135.192.3/downloads/get_file.php http://3.135.192.3/downloads/loader.bat http://3.135.192.3/downloads/loader.ps1 http://3.135.192.3/mac/5cd9a56eaebe4c2fe881fe85fd419f6993e73851e6763f06c7b35b08224135c7 http://3.135.192.3/mac/90cf184b21561c4d4052a77036d07a6d3a74336dd15f97bda483e59d7b90a99e http://3.135.192.3/mac/899db863a318c29489ceb216020766f896bb4bb490cefae393e326f5550be796 http://3.135.192.3/mac/e5623906b84e3c18ecccc0697618da5ea0c9c6b8a8427dced15666b72e79f727 http://3.135.192.3/DLP/evasions_folder/infected.zip http://3.135.192.3/DLP/evasions_folder/New%20DLP%20Files/Benign-File.docx http://3.135.192.3/DLP/evasions_folder/New%20DLP%20Files/CC%20Info%20Screenshot.docx http://3.135.192.3/DLP/evasions_folder/New%20DLP%20Files/GPCS_DSS_Integration_docx.docx http://3.135.192.3/DLP/evasions_folder/New%20DLP%20Files/GPCS_DSS_Integration_ppt.ppt http://3.135.192.3/DLP/evasions_folder/New%20DLP%20Files/GPCS_DSS_Integration_xls.xls http://3.135.192.3/DLP/evasions_folder/New%20DLP%20Files/Source%20Code.docx http://3.135.192.3/DLP/evasions_folder/New%20DLP%20Files/dlp-image-only.pdf http://3.135.192.3/DLP/evasions_folder/amsi_bypass_function_patching/ab64e0f1c14c82ec5a8bb5515a82b464a65554ae7d826dc20927a4bed01709d6.bin http://3.135.192.3/DLP/evasions_folder/checkpoint_anti_sandbox_tool/SandboxEvasion.exe http://3.135.192.3/DLP/evasions_folder/cpu_core_check/b2600ac9b83e5bb5f3d128dbb337ab1efcdc6ce404adb6678b062e95dbf10c93.bin http://3.135.192.3/DLP/evasions_folder/date_time_check/4f05c9db547456e8baef7cd5a07a31ee38226e4c72fc0e7ab19ee104e00a703c.bin http://3.135.192.3/DLP/evasions_folder/document_click_image_macro/9ddfeb6fe6fa870c128d28a27333323dec4a0f6e2459f877a708eaf8747ba65b.bin http://3.135.192.3/DLP/evasions_folder/dotNet_webclient_for_downloading/0ef5ba3a3dca0cf281711966ee8aa0aeea795de66e14b17e494734a1f24a4617.bin http://3.135.192.3/DLP/evasions_folder/get_tick_count/7035bcc4bc559aa8d601148f37c453b11b7a4fd1048d4fb07c69eededbe55f7c.000 http://3.135.192.3/DLP/evasions_folder/ghostwriting_adrian/cbc3a4c12066e06b499b59b1bcdfe4a98d423563881c705db63a7fac4a9a671a.bin http://3.135.192.3/DLP/evasions_folder/gravityRAT_cpu_temp_check/1c0ea462f0bbd7acfdf4c6daf3cb8ce09e1375b766fbd3ff89f40c0aa3f4fc96.bin http://3.135.192.3/DLP/evasions_folder/locky_odin_wsf_script/86d229d219a21ab8092839a4361d30977e56c78f0ada10b6d68363b2834dd1dc.bin http://3.135.192.3/DLP/evasions_folder/parasiteHTTP_RAT_hook_removal/b52706530d7b56599834615357e8bbc1f5bed669001c06830029784eb4669518.bin http://3.135.192.3/DLP/evasions_folder/polyglot_testing_adrian/bitmap_modified.bmp http://3.135.192.3/DLP/evasions_folder/regsvr32_call_sct_files/28d39a8896436142bff7299f5ed21cabf52c8eb1151e13f5cd5c75d9e1e67959.bin http://3.135.192.3/DLP/evasions_folder/roaming_app_data_folder/BypassRoamingData.exe http://3.135.192.3/DLP/evasions_folder/scheduled_task_COM/477a5359c5ce9f364dfcfed6f4b24fbd51449d92bfdfd6a6d1501faa12bb55e8.bin http://3.135.192.3/DLP/evasions_folder/threading_sleep_timing_issues/cb00cc7ba0fefd03aeb2ea855e2e5aeeb8cec203399d532a221dee7b1c1a2e42.bin http://3.135.192.3/DLP/evasions_folder/trickbot_unhook/9ac689eacf154e7f36e9b5b17ecbedd69dfbbbbe405db27612b38dda5da046ee.bin http://3.135.192.3/DLP/evasions_folder/trojan_installs_as_service/1efd68cd651c6e7ee0b6849286b39627e8b8394bc3229e48a1a584695b5c7c59.bin http://3.135.192.3/DLP/evasions_folder/ursnif_look_for_processes/9e40b0c62ec994310b2c8480fa8f7705bf1a725dff3f25253894098a4e3dd2f4.bin http://3.135.192.3/DLP/evasions_folder/ursnif_multiple_checks/0cade13acbc1e9bf67646633f1782fac4ce308ed358c496a57d10863cd3a6bc2.bin http://3.135.192.3/DLP/evasions_folder/vb_krypter/8dcd91892502d9a6758bd256fedb640bcf661b2e1f0087f7a73438ecd3e95968.bin http://3.135.192.3/DLP/evasions_folder/vbcryptor_replace_syscalls/ba8db59040f89e13a3164f5a2f0a5c3297e221b79ef057922e86fa49a6f99c21.bin http://3.135.192.3/DLP/evasions_folder/vulnerable_xsltconsoleapplication_adrian/XsltConsoleApplication.exe