PULSE NAME
bad dns records again
WHITE dorkingbeauty1 2022-02-17 Modified: 2022-03-19
101
IOCs
HIGH VOLUME
seems like most people dont see the same records churned out like i do. only other infected persons can open my links to otx everyone else says it fails to open so hows that work
Indicators of Compromise (101)
All URL hostname FileHash-SHA256 domain
TYPEINDICATORDESCRIPTIONCREATED
URL http://mobile2.banm.com/ 2022-02-17
URL http://delivery.vdcapps.com/DS/servlet/ViewFilesServlet?IcOwScOuZcKVw6w9EsO4w4AcRcOFIMOHLBQXB08NM8OTw4HCjcOWwqLDqHDDhcONesKIWsOhRyfDlCbDmcOMd0TCnSrCg8OZdcOYw6HDv2ZuXMKwXcOyJcK7wr9Ow7zCmyXDk1XCjGzDicK1wrwSWsKrwr%2FCu3B0Tg=%3D 2022-02-17
URL http://www.vdcapps.com/CDSProxy/servlet/com.sun.cd 2022-02-17
URL http://www.vdcapps.com/CDSProxy/servlet/com.sun.cds.proxy.servlet.CDSProxyListenerServlet 2022-02-17
hostname beta.verizongridwide.com 2022-02-17
hostname mc-test.verizongridwide.com 2022-02-17
hostname portal-staging.verizongridwide.com 2022-02-17
hostname portal-test.verizongridwide.com 2022-02-17
hostname portal.verizongridwide.com 2022-02-17
hostname support.verizongridwide.com 2022-02-17
FileHash-SHA256 7eec7d07587112777016e5742c0d002d7e64a3e1fe7bde82fed8f65e3663456a 2022-02-17
domain airbridge.net 2022-02-17
domain banm.com 2022-02-17
domain cellscape.com 2022-02-17
domain digitalphones.net 2022-02-17
domain getvzappzone.com 2022-02-17
domain gnecdmon.com 2022-02-17
domain myvzweb.com 2022-02-17
domain vdcapps.com 2022-02-17
domain verizonapp.com 2022-02-17
domain verizongridwide.com 2022-02-17
domain vtextme.com 2022-02-17
domain vzwcs.com 2022-02-17
domain vzwpushtotalk.com 2022-02-17
domain vzwsalesforcemanager.net 2022-02-17
domain vzwtest.com 2022-02-17
domain wap2test.com 2022-02-17
hostname ns1.vzwdomain.com 2022-02-17
hostname ns2.vzwdomain.com 2022-02-17
URL http://carkdns.vzwdomain.com 2022-02-17
URL http://carkdns.vzwdomain.com/ 2022-02-17
URL http://njbbdns.vzwdomain.com 2022-02-17
URL http://njbbdns.vzwdomain.com/ 2022-02-17
URL http://ns1.vzwdomain.com 2022-02-17
URL http://ns1.vzwdomain.com/ 2022-02-17
URL http://ns2.vzwdomain.com 2022-02-17
URL https://carkdns.vzwdomain.com 2022-02-17
URL https://njbbdns.vzwdomain.com 2022-02-17
URL https://ns1.vzwdomain.com 2022-02-17
URL https://ns2.vzwdomain.com 2022-02-17
domain vzwdomain.com 2022-02-17
FileHash-SHA256 0127f3a75624c6295c23f726e6e6acc470b425e833b36a6f9f4132bf956b6972 2022-02-17
FileHash-SHA256 3d955cd5e11cc26ac2e373f6549a728f927f1c1ea91fe9846713bd7b8c48e377 2022-02-17
FileHash-SHA256 3ffbd8d97e2ba8733b948c189c82d409fa9e765b30271a5220be3fcecb3cc6a8 2022-02-17
FileHash-SHA256 5badb1d796958de8669ac6c3d197fb86eecb37e2bcbbee34e93d2fa4925e4a34 2022-02-17
FileHash-SHA256 905c75f99d3436e1970c1a5729dd2ae22a9d57ebd88e80f273668d50f9bc9f59 2022-02-17
FileHash-SHA256 b7ac2f0b66da41a99fb1a2a0818da9b5f36a143bb9adef0f4d38f20c7d728b8d 2022-02-17
hostname bbtpnj33wzwvetm-c-nk-x-00-sms-00.vtext.com 2022-02-17
hostname njbrspamp1.vtext.com 2022-02-17
hostname njbrspamp3.vtext.com 2022-02-17
hostname njbrspamp7.vtext.com 2022-02-17
hostname smtp-sl.vtext.com 2022-02-17
hostname test3.vtext.com 2022-02-17
hostname test4.vtext.com 2022-02-17
hostname test5.vtext.com 2022-02-17
hostname test6.vtext.com 2022-02-17
hostname twbgohaavzwvcmta-c-nk-x-00-mms-00.vtext.com 2022-02-17
hostname twbgohaavzwvcmta-c-nk-x-00-sms-02.vtext.com 2022-02-17
hostname txslspamp3.vtext.com 2022-02-17
URL http://mms.vtext.com/s 2022-02-17
URL http://mms.vtext.com/servlets/mmscbs 2022-02-17
URL http://mms.vtext.com/servlets/mmsdefault 2022-02-17
URL http://uaprof.vtext.com/htc/g2pw2100/g2pw2100.xml 2022-02-17
URL http://uaprof.vtext.com/mot/motogpower/motogpower.xml 2022-02-17
URL http://uaprof.vtext.com/mot/motoxt1575/motoxt1575.xml 2022-02-17
URL http://uaprof.vtext.com/zte/ 2022-02-17
URL http://www.vtext.com/customer_site/jsp/disclaimer.jsp 2022-02-17
URL https://bbtpnj33wzwvetm-c-nk-x-00-sms-00.vtext.com 2022-02-17
URL https://njbrspamp1.vtext.com 2022-02-17
URL https://njbrspamp3.vtext.com 2022-02-17
URL https://njbrspamp5.vtext.com 2022-02-17
URL https://njbrspamp7.vtext.com 2022-02-17
URL https://smtp-sl.vtext.com 2022-02-17
URL https://test3.vtext.com 2022-02-17
URL https://test4.vtext.com 2022-02-17
URL https://test6.vtext.com 2022-02-17
URL https://twbgohaavzwvcmta-c-nk-x-00-mms-00.vtext.com 2022-02-17
URL https://twbgohaavzwvcmta-c-nk-x-00-sms-02.vtext.com 2022-02-17
URL https://txslspamp3.vtext.com 2022-02-17
hostname au1lv.imsvm.com 2022-02-17
hostname brh1lv.imsvm.com 2022-02-17
hostname ch1lv.imsvm.com 2022-02-17
hostname hch1lv.imsvm.com 2022-02-17
hostname rcm1lv.imsvm.com 2022-02-17
hostname rk1lv.imsvm.com 2022-02-17
hostname sl1lv.imsvm.com 2022-02-17
hostname tem1lv.imsvm.com 2022-02-17
hostname tu1lv.imsvm.com 2022-02-17
hostname v4becs-vvm.lv.imsvm.com 2022-02-17
hostname vi2lv.imsvm.com 2022-02-17
URL http://vi1lv.imsvm.com/ 2022-02-17
URL http://vi2lv.imsvm.com/ 2022-02-17
URL http://yo1lv.imsvm.com/ 2022-02-17
hostname 4.sub-174-250-28.myvzw.com 2022-02-17
domain imsvm.com 2022-02-17
domain vtext.biz 2022-02-17
domain vtext.com 2022-02-17
domain vzvmz.biz 2022-02-17
domain vzwmail.net 2022-02-17
hostname carkdns.vzwdomain.com 2022-02-17
hostname njbbdns.vzwdomain.com 2022-02-17