PULSE NAME
Cyberattack on Ukrainian government organizations using Cobalt Strike Beacon malware and exploits to vulnerabilities CVE-2021-40444 and CVE-2022-30190 (CERT-UA # 4753)
WHITE CyberHunter_NL 2022-06-03 Modified: 2022-07-03
12
IOCs
MEDIUM VOLUME
MITRE ATT&CK & Malware Families
MALWARE FAMILIES
Cobalt Strike
Indicators of Compromise (12)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 34efd97c9ed25e68b52f35b2c6cab9a5 MD5 of 7908d7095ed1cde36b7fd8f45966fc56f0b72ca131121fdb3f8397c0710100e1 2022-06-03
FileHash-MD5 48bc4f0c9b3fe67610c105de0b2a6bd7 MD5 of 7fafbd8d6b15279ca377d5d871ecb108284fc28f905b73488850999d445c2087 2022-06-03
FileHash-MD5 754c122f3e311825adc9d46ba3665bb9 2022-06-03
FileHash-SHA1 10a32a80731a8ee777db5b9fd06c942817b0043f SHA1 of 7fafbd8d6b15279ca377d5d871ecb108284fc28f905b73488850999d445c2087 2022-06-03
FileHash-SHA1 ee595023501513e006797ab1b8376c98b188110c SHA1 of 7908d7095ed1cde36b7fd8f45966fc56f0b72ca131121fdb3f8397c0710100e1 2022-06-03
FileHash-SHA256 7908d7095ed1cde36b7fd8f45966fc56f0b72ca131121fdb3f8397c0710100e1 2022-06-03
FileHash-SHA256 7fafbd8d6b15279ca377d5d871ecb108284fc28f905b73488850999d445c2087 2022-06-03
FileHash-SHA256 cf2f412ea94253358d3b2a4eebdf2067c6952b1921f0cb754ce888a01e0e0065 2022-06-03
URL https://nod-update.it/check-updates/c/updates/updates.html 2022-06-03
URL https://nod-update.it/getsearchresults 2022-06-03
URL https://nod-update.it/siteindex/b/ 2022-06-03
domain nod-update.it 2022-06-03