PULSE NAME
PROMETHIUM Activity Second Half of 2020
WHITE PROMETHIUM AlienVault 2020-09-09 Modified: 2020-11-10
51
IOCs
HIGH VOLUME
PROMETHIUM Activity Second Half of 2020, includes reused infra and potentially older but recently identified malware samples.
Indicators of Compromise (51)
All domain FileHash-SHA256 FileHash-MD5 FileHash-SHA1
TYPEINDICATORDESCRIPTIONCREATED
domain informationstoreserver.com 2020-09-09
domain dangerposedbyhaving.com 2020-09-09
domain upd32-secure-serv4.com 2020-09-09
domain secure-upd21-app2.com 2020-09-09
domain network-msx-system33.com 2020-09-09
domain mailtransfersagents.com 2020-09-09
FileHash-SHA256 39a1dbf962f1e93da103ddb4a0890f10645b9a1d4dcb48e7e66b0a1d9337d4bd 2020-09-09
FileHash-SHA256 c34b9a5d82e10fa6ebfb010a01e42cd288e90c59e4f3984116ecb4f5428fbdf1 2020-09-09
FileHash-SHA256 e867bcac8bf13982ba5781f0d7863cdae50704a49dfd582557752d838b8a0b4b 2020-09-09
FileHash-SHA256 6b497dbaefbb4d0836d90ec2cc34ba3964a3c29e14b9b156d4170b03973f99a2 2020-09-09
FileHash-SHA256 dafa02b10d4e0defe780afcadcb0012da3a55b3de63e0e08814d969507083ec4 2020-09-09
FileHash-SHA256 9e2f961d212747daae69c6bc9062ed88898ea7ae05cac440244162b27a706231 2020-09-09
FileHash-MD5 5a2ab5dca0ff72b6ebdc1be83bcea91c MD5 of 39a1dbf962f1e93da103ddb4a0890f10645b9a1d4dcb48e7e66b0a1d9337d4bd 2020-09-09
FileHash-MD5 7f2a460434dee9a36d00ce4c9c5069b0 MD5 of 6b497dbaefbb4d0836d90ec2cc34ba3964a3c29e14b9b156d4170b03973f99a2 2020-09-09
FileHash-MD5 f76aeab34333556a483d6de6347b5e31 MD5 of e867bcac8bf13982ba5781f0d7863cdae50704a49dfd582557752d838b8a0b4b 2020-09-09
FileHash-MD5 5b3f855706f58bdda07b2fb5c7977c76 MD5 of 9e2f961d212747daae69c6bc9062ed88898ea7ae05cac440244162b27a706231 2020-09-09
FileHash-MD5 4f805f9973224ff9e86471344d173a7f MD5 of c34b9a5d82e10fa6ebfb010a01e42cd288e90c59e4f3984116ecb4f5428fbdf1 2020-09-09
FileHash-MD5 2abee4519361566ee37bbf53f9292787 MD5 of dafa02b10d4e0defe780afcadcb0012da3a55b3de63e0e08814d969507083ec4 2020-09-09
FileHash-SHA1 eb99dc55cb4330d2c6a640eeb7a5b9ce87d74826 SHA1 of c34b9a5d82e10fa6ebfb010a01e42cd288e90c59e4f3984116ecb4f5428fbdf1 2020-09-09
FileHash-SHA1 242ee3bed03d06805a4a010d983141b4b1d63f30 SHA1 of 39a1dbf962f1e93da103ddb4a0890f10645b9a1d4dcb48e7e66b0a1d9337d4bd 2020-09-09
FileHash-SHA1 95193969635120f6fbb7992d283ab2d392960fad SHA1 of dafa02b10d4e0defe780afcadcb0012da3a55b3de63e0e08814d969507083ec4 2020-09-09
FileHash-SHA1 fcefd21a56c276ad01c8267a01f3d6e3cfa02855 SHA1 of 6b497dbaefbb4d0836d90ec2cc34ba3964a3c29e14b9b156d4170b03973f99a2 2020-09-09
FileHash-SHA1 dad3707dd3187ad483e91a1dd57180687daa8f37 SHA1 of 9e2f961d212747daae69c6bc9062ed88898ea7ae05cac440244162b27a706231 2020-09-09
FileHash-SHA1 df787dc19c4b168bcd25ab3d6afe552447ba55e0 SHA1 of e867bcac8bf13982ba5781f0d7863cdae50704a49dfd582557752d838b8a0b4b 2020-09-09
domain forwardyournetwork.com 2020-09-09
FileHash-SHA256 9727188490ef809066321a4bfe47cd60c887c11c1567703ebcedb7690f6759f7 2020-09-09
FileHash-MD5 7a781914cba73dbc5b784c2901b0d118 MD5 of 9727188490ef809066321a4bfe47cd60c887c11c1567703ebcedb7690f6759f7 2020-09-09
FileHash-SHA1 03b5bb7e6d7aff0266b48d78ecc989f9d9e7a2f9 SHA1 of 9727188490ef809066321a4bfe47cd60c887c11c1567703ebcedb7690f6759f7 2020-09-09
domain secretinformations.com 2020-09-09
domain selectednewfile.com 2020-09-09
domain repositoryupdating.com 2020-09-09
FileHash-SHA256 b1446718a8dc2a4d97d0d2758149b80d761740a0bb4b6c758b92e3069802c732 2020-09-09
FileHash-SHA256 4bf9fde6886a4497a3a5809ac29d44ba401143d7179a0c86e113758be21521f9 2020-09-09
FileHash-MD5 78f23e8e1a68c195ae2754922cb344d9 MD5 of 4bf9fde6886a4497a3a5809ac29d44ba401143d7179a0c86e113758be21521f9 2020-09-09
FileHash-MD5 9a2a7a4166abf084dfcf274e38d59813 MD5 of b1446718a8dc2a4d97d0d2758149b80d761740a0bb4b6c758b92e3069802c732 2020-09-09
FileHash-SHA1 5406341cb081f26c220c47ea9369a21181f4a772 SHA1 of b1446718a8dc2a4d97d0d2758149b80d761740a0bb4b6c758b92e3069802c732 2020-09-09
FileHash-SHA1 ad92bb9d80eb6327e201a115f830e2ae4107fdff SHA1 of 4bf9fde6886a4497a3a5809ac29d44ba401143d7179a0c86e113758be21521f9 2020-09-09
domain certificamanagers.com 2020-09-11
FileHash-SHA256 9927286d25dd8b302fcfc2af7c7185cc9b7abe367ff9969563b977795092866d 2020-09-11
FileHash-SHA256 36edb1cf3940f1e1715d2bdf3b09d4fb06ca6a67494f36aeaebb9a2994440fd1 2020-09-11
FileHash-SHA256 a271cff3fe32b5c7f876a55ac9acd621932e8d415af9bf1a86a2f014b41d922b 2020-09-18
FileHash-SHA256 ed79faa040566cd6631018c59fe58894a6e2d748f1fb152c0c5a54efc323abdd 2020-09-18
FileHash-SHA256 da18710423ce0985abf6e2b7792b7b554cf1c28162d35c98d95a144cc181070b 2020-09-18
FileHash-MD5 10b72cbf3785f3abc2622c89505212a7 MD5 of a271cff3fe32b5c7f876a55ac9acd621932e8d415af9bf1a86a2f014b41d922b 2020-09-18
FileHash-MD5 a82ffdbde154ed06ba5fa3c4914c84d6 MD5 of da18710423ce0985abf6e2b7792b7b554cf1c28162d35c98d95a144cc181070b 2020-09-18
FileHash-SHA1 e2d4ab7fdc5083febd3b437806e6e0317713ca54 SHA1 of da18710423ce0985abf6e2b7792b7b554cf1c28162d35c98d95a144cc181070b 2020-09-18
FileHash-SHA1 10f477d5747d0ae7d6d586db8116f8f9cb07dfe0 SHA1 of a271cff3fe32b5c7f876a55ac9acd621932e8d415af9bf1a86a2f014b41d922b 2020-09-18
domain transferprotocolpolicy.com 2020-11-10
FileHash-SHA256 d187ef8dea351f0f6aec3e13eff52e29fad574d147508d4dd3ba4da71eb9d63a 2020-11-10
FileHash-MD5 acd4a1bfd4f08dd799b09496cda32af3 MD5 of d187ef8dea351f0f6aec3e13eff52e29fad574d147508d4dd3ba4da71eb9d63a 2020-11-10
FileHash-SHA1 e28a30eb65491bb34512620f40bd93ca7766fcbb SHA1 of d187ef8dea351f0f6aec3e13eff52e29fad574d147508d4dd3ba4da71eb9d63a 2020-11-10
References (1)
↗ AT&T Alien Labs