PULSE NAME
Who are the latest targets of cyber group Lyceum? - Prevailion
WHITE Lyceum Tr1sa111 2022-08-08 Modified: 2022-08-08
52
IOCs
HIGH VOLUME
A new report from Accenture and Prevailion Adversarial Counterintelligence (PACT) sheds new light on the cyber espionage threat group Lyceum, which targets telecommunications providers and government agencies in the Middle East.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Shark Lyceum Milan MilanRAT Telemetry Indicating
Indicators of Compromise (52)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 1d94961261c5da63ff5faa7616cec579 MD5 of 2f2ef9e3f6db2146bd277d3c4e94c002ecaf7deaabafe6195fddabc81a8ee76c 2022-08-08
FileHash-MD5 3e993dfe5ce90dadb0cf0707d260febd MD5 of 21ab4357262993a042c28c1cdb52b2dab7195a6c30fa8be723631604dd330b29 2022-08-08
FileHash-MD5 888534c600d4c62d144b42e3e92c941b MD5 of b54a67062bdcd32dfa9f3d7b69780d2e6e4925777290bc34e8f979a1b4b72ea2 2022-08-08
FileHash-MD5 94b0cfa3c654f17562a62541238ff6bb MD5 of b766522dd4189fef7775d663e5649ba9d8be8e03022039d20848fcbc3643e5f2 2022-08-08
FileHash-MD5 b67c8752622d53be9f966d66e960745d MD5 of a2754d7995426b58317e437f8ed6770cd7bb7b18d971e23b2b300b75e34fa086 2022-08-08
FileHash-MD5 e2919dea773eb0796e46e126dbce17b1 MD5 of b46949feeda8726c0fb86d3cd32d3f3f53f6d2e6e3fcd6f893a76b8b2632b249 2022-08-08
FileHash-MD5 e8d3aeea7617982bb6e484a9f8307e6b MD5 of d3606e2e36db0a0cb1b8168423188ee66332cae24fe59d63f93f5f53ab7c3029 2022-08-08
FileHash-SHA1 09bd833782a6b2cccdd3285ad12f23bedb1dbb77 SHA1 of d3606e2e36db0a0cb1b8168423188ee66332cae24fe59d63f93f5f53ab7c3029 2022-08-08
FileHash-SHA1 24e3af0612ac12377220f86623a8094bf136c646 SHA1 of b766522dd4189fef7775d663e5649ba9d8be8e03022039d20848fcbc3643e5f2 2022-08-08
FileHash-SHA1 41ad24e9ca3e36d9e55d574248482bf81e263c12 SHA1 of 2f2ef9e3f6db2146bd277d3c4e94c002ecaf7deaabafe6195fddabc81a8ee76c 2022-08-08
FileHash-SHA1 5195ff04b50d41c3c5d2c4c441ea021e9822860f SHA1 of a2754d7995426b58317e437f8ed6770cd7bb7b18d971e23b2b300b75e34fa086 2022-08-08
FileHash-SHA1 69d58a5ff2c0343119816d34ce9da8d9bc6f47c9 SHA1 of 21ab4357262993a042c28c1cdb52b2dab7195a6c30fa8be723631604dd330b29 2022-08-08
FileHash-SHA1 94aa7417f388c61a2d63ddcba6efec80c55f8555 SHA1 of b46949feeda8726c0fb86d3cd32d3f3f53f6d2e6e3fcd6f893a76b8b2632b249 2022-08-08
FileHash-SHA1 b972a51a83d8963d64bc48a3ebf50f0777d3c643 SHA1 of b54a67062bdcd32dfa9f3d7b69780d2e6e4925777290bc34e8f979a1b4b72ea2 2022-08-08
FileHash-SHA256 17ab5ee10033da8a519c0547581f40677b973345d8c3172a4fde612692188460 2022-08-08
FileHash-SHA256 21ab4357262993a042c28c1cdb52b2dab7195a6c30fa8be723631604dd330b29 2022-08-08
FileHash-SHA256 2f2ef9e3f6db2146bd277d3c4e94c002ecaf7deaabafe6195fddabc81a8ee76c 2022-08-08
FileHash-SHA256 a2754d7995426b58317e437f8ed6770cd7bb7b18d971e23b2b300b75e34fa086 2022-08-08
FileHash-SHA256 b46949feeda8726c0fb86d3cd32d3f3f53f6d2e6e3fcd6f893a76b8b2632b249 2022-08-08
FileHash-SHA256 b54a67062bdcd32dfa9f3d7b69780d2e6e4925777290bc34e8f979a1b4b72ea2 2022-08-08
FileHash-SHA256 b766522dd4189fef7775d663e5649ba9d8be8e03022039d20848fcbc3643e5f2 2022-08-08
FileHash-SHA256 d3606e2e36db0a0cb1b8168423188ee66332cae24fe59d63f93f5f53ab7c3029 2022-08-08
URL http://maliciousdomain.com/?q=[GUID 2022-08-08
URL https://akastatus.com/?id=iCIG4FOfzf&formid=M2M3M2MzNTk%3d111111iT 2022-08-08
URL https://securednsservice.net/?proto=6&index=MjJkYzEwZWY5NTY5NDk3ZDg2YTljNDYzNWQxYTc0YTM%3D&name= 2022-08-08
domain akastatus.com 2022-08-08
domain centosupdatecdn.com 2022-08-08
domain checkinternet.org 2022-08-08
domain cybersecnet.co.za 2022-08-08
domain cybersecnet.org 2022-08-08
domain defenderlive.com 2022-08-08
domain defenderstatus.com 2022-08-08
domain digitalmarketingagency.net 2022-08-08
domain dnsanalizer.com 2022-08-08
domain dnscatalog.net 2022-08-08
domain dnscdn.org 2022-08-08
domain dnsstatus.org 2022-08-08
domain excsrvcdn.com 2022-08-08
domain hpesystem.com 2022-08-08
domain indianmombais.com 2022-08-08
domain livednscdn.com 2022-08-08
domain maliciousdomain.com 2022-08-08
domain micrsoftonline.net 2022-08-08
domain online-analytic.com 2022-08-08
domain securednsservice.net 2022-08-08
domain sysadminnews.info 2022-08-08
domain uctpostgraduate.com 2022-08-08
domain updatecdn.net 2022-08-08
domain web-traffic.info 2022-08-08
domain windowsupdatecdn.com 2022-08-08
domain wsuslink.com 2022-08-08
domain zonestatistic.com 2022-08-08