PULSE NAME
Threat Intel Report - W53-2022.pdf
WHITE aa00643640@techmahindra.com 2022-12-26 Modified: 2023-01-25
217
IOCs
HIGH VOLUME
This is a cyber-advisory document, presenting the compiled cyber threat intelligence sourced from various channels and tools. These are weekly base recommendations to all IT Administrators and CISOs to take corrective actions to upgrade their security infrastructure against newly identified threats and attacks in this week. Security is a continuous process, and it has to be reviewed and audited on a continuous manner through manual or automated tools. These details may be used as an additional layer to verify the current security posture of an organization against latest cyber trends.
Indicators of Compromise (217)
All URL FileHash-MD5 FileHash-SHA1 FileHash-SHA256 CVE domain hostname
TYPEINDICATORDESCRIPTIONCREATED
URL http://110.183.49.225:43747/.i 2022-12-26
URL http://182.240.2.236:60488/bin.sh 2022-12-26
URL http://219.157.52.185:59835/Mozi.m 2022-12-26
URL http://58.253.11.97:34894/Mozi.a 2022-12-26
URL http://61.52.156.175:44871/Mozi.m 2022-12-26
FileHash-MD5 1d641e8215a82151e8925673bfb171a1 MD5 of 5882c280879e455296e2ff9e0570d6dfe4780cf18e62e7c8ba346a97a719d445 2022-12-26
FileHash-MD5 cb41a6b7a7f4a5bfc31a327e0f09e85e MD5 of 97406ce4e2f14cee1e32d3bcd082878a106d34e179e7ab9bc04aa92e424e72bc 2022-12-26
FileHash-SHA1 12885d250304d50920b79a00524250eaac5a7741 SHA1 of 5882c280879e455296e2ff9e0570d6dfe4780cf18e62e7c8ba346a97a719d445 2022-12-26
FileHash-SHA1 e6651675fe2c060c92fb2ad03de90d78d30116d4 SHA1 of 97406ce4e2f14cee1e32d3bcd082878a106d34e179e7ab9bc04aa92e424e72bc 2022-12-26
FileHash-SHA256 5882c280879e455296e2ff9e0570d6dfe4780cf18e62e7c8ba346a97a719d445 2022-12-26
FileHash-SHA256 97406ce4e2f14cee1e32d3bcd082878a106d34e179e7ab9bc04aa92e424e72bc 2022-12-26
CVE CVE-2022-41080 2022-12-26
CVE CVE-2022-41082 2022-12-26
CVE CVE-2022-45359 2022-12-26
FileHash-MD5 2f00e6c10cf77b008132b5544b12bcce MD5 of ebc656b1f0fcd3506f59c34b84601bfd20de1fa0d697b34265ad3121fffe99a7 2022-12-26
FileHash-MD5 4d089f6d15b92693578b6f3ad414c9e7 MD5 of 9984a0b7f1a42de9307aaf9d9a6adf84dede37d2f0409ac333acaa7d1c83c48a 2022-12-26
FileHash-MD5 6628fb4f54815e0907c1760315b78983 MD5 of 15347a41c9a5909a7fffbc8f89c7b0154dafe57ac80e9a153ffda2936f63b24a 2022-12-26
FileHash-MD5 6f23b25ccad5e4bf5e505e0f7b7f7e86 MD5 of c4d801026c7dd0aebd6df27d7c84af435c1c1b06c0c2783c13d35b2d3d268d5e 2022-12-26
FileHash-MD5 ac382bfcfaea86b5749f7abc571ccf12 MD5 of f7f8d1ebfed3afd13eb47392a7f502603ecb970a817c221682cd8f2a17ff2bb3 2022-12-26
FileHash-SHA1 120f47d7510cbd64728ef53d4d2fa1b0a84e1d09 SHA1 of 9984a0b7f1a42de9307aaf9d9a6adf84dede37d2f0409ac333acaa7d1c83c48a 2022-12-26
FileHash-SHA1 63937ad10d7d593fa32733b69da77261a665c0d2 SHA1 of 15347a41c9a5909a7fffbc8f89c7b0154dafe57ac80e9a153ffda2936f63b24a 2022-12-26
FileHash-SHA1 64d0472a9d7b215b8989aefac7ff0dd9386c9d9c SHA1 of ebc656b1f0fcd3506f59c34b84601bfd20de1fa0d697b34265ad3121fffe99a7 2022-12-26
FileHash-SHA1 928454bcce909ea349a03b14c043430905a88fdb SHA1 of f7f8d1ebfed3afd13eb47392a7f502603ecb970a817c221682cd8f2a17ff2bb3 2022-12-26
FileHash-SHA1 bbe46b038d7fccdcf5e2ca0fd36fd81ea970860d SHA1 of c4d801026c7dd0aebd6df27d7c84af435c1c1b06c0c2783c13d35b2d3d268d5e 2022-12-26
FileHash-SHA256 15347a41c9a5909a7fffbc8f89c7b0154dafe57ac80e9a153ffda2936f63b24a 2022-12-26
FileHash-SHA256 4d8ea56a1b0dc2c6ac32dc19c37225ed18009e74bcf53c7e8b842786e1aec53d 2022-12-26
FileHash-SHA256 518261f1fa66ad1a7336a7e499391a02c7239fe665adac002c67d2633e2f8676 2022-12-26
FileHash-SHA256 5d8c22a2f979e395dc9f076da46ee96c1b9d0dd266ff59c9bfb71d3353401739 2022-12-26
FileHash-SHA256 8fb95743124cee7b27ebc1f6920d8a39566ec08c3cbae0df0f4cb729778f9963 2022-12-26
FileHash-SHA256 9984a0b7f1a42de9307aaf9d9a6adf84dede37d2f0409ac333acaa7d1c83c48a 2022-12-26
FileHash-SHA256 b6312b7d740312c6ceb4d0c45502e5ed4ff9f7da91b73b6b1241dcdb5dcfd676 2022-12-26
FileHash-SHA256 c4d801026c7dd0aebd6df27d7c84af435c1c1b06c0c2783c13d35b2d3d268d5e 2022-12-26
FileHash-SHA256 cde771e7d78eb5d2c0f51e96b1b8b6dcc157fd4439434c5ba0ed8b7af90d1988 2022-12-26
FileHash-SHA256 ebc656b1f0fcd3506f59c34b84601bfd20de1fa0d697b34265ad3121fffe99a7 2022-12-26
FileHash-SHA256 f7f8d1ebfed3afd13eb47392a7f502603ecb970a817c221682cd8f2a17ff2bb3 2022-12-26
URL http://1.20.107.141:50231/Mozi.m 2022-12-26
URL http://1.65.175.62:38544/Mozi.m 2022-12-26
URL http://103.107.60.133:48163/bin.sh 2022-12-26
URL http://103.107.60.133:48163/i 2022-12-26
URL http://113.118.132.241:45223/Mozi.m 2022-12-26
URL http://113.221.79.143:54809/bin.sh 2022-12-26
URL http://115.49.208.88:56010/Mozi.m 2022-12-26
URL http://115.50.91.84:44165/i 2022-12-26
URL http://115.55.125.66:45231/Mozi.m 2022-12-26
URL http://115.55.129.102:49671/Mozi.m 2022-12-26
URL http://117.193.104.106:57906/bin.sh 2022-12-26
URL http://117.193.118.113:55287/bin.sh 2022-12-26
URL http://117.193.118.113:55287/i 2022-12-26
URL http://117.194.144.76:43483/Mozi.m 2022-12-26
URL http://117.194.147.49:53773/Mozi.m 2022-12-26
URL http://117.194.153.16:50953/i 2022-12-26
URL http://117.194.156.254:37686/Mozi.m 2022-12-26
URL http://117.194.164.25:40950/Mozi.m 2022-12-26
URL http://117.195.91.236:46790/Mozi.m 2022-12-26
URL http://117.196.60.99:59214/Mozi.m 2022-12-26
URL http://117.198.246.133:47266/Mozi.m 2022-12-26
URL http://117.205.201.173:51906/i 2022-12-26
URL http://117.212.173.107:53695/Mozi.m 2022-12-26
URL http://117.213.15.131:52429/Mozi.m 2022-12-26
URL http://117.214.217.137:50251/bin.sh 2022-12-26
URL http://117.214.217.137:50251/i 2022-12-26
URL http://117.215.193.188:41027/Mozi.m 2022-12-26
URL http://117.216.46.157:40830/Mozi.m 2022-12-26
URL http://117.217.231.79:47090/bin.sh 2022-12-26
URL http://117.217.231.79:47090/i 2022-12-26
URL http://117.243.174.217:55095/Mozi.m 2022-12-26
URL http://117.252.210.44:40979/i 2022-12-26
URL http://117.253.156.114:37032/Mozi.m 2022-12-26
URL http://117.255.26.138:45829/bin.sh 2022-12-26
URL http://117.255.26.138:45829/i 2022-12-26
URL http://119.187.178.180:54324/Mozi.a 2022-12-26
URL http://121.190.56.228:25199/.i 2022-12-26
URL http://123.13.20.251:49026/Mozi.m 2022-12-26
URL http://123.14.89.89:54255/Mozi.m 2022-12-26
URL http://123.5.158.18:58913/Mozi.m 2022-12-26
URL http://123.5.55.126:52277/Mozi.a 2022-12-26
URL http://123.7.42.104:53103/bin.sh 2022-12-26
URL http://123.7.42.104:53103/i 2022-12-26
URL http://125.41.254.244:38913/mozi.m 2022-12-26
URL http://125.47.12.149:43118/Mozi.m 2022-12-26
URL http://125.47.86.98:58139/bin.sh 2022-12-26
URL http://125.47.86.98:58139/i 2022-12-26
URL http://125.83.104.253:34632/Mozi.m ca35f2e3b3f297c371f0a58398cb43e24c1d1419f08baff9b9223b9032ccf4c1 2022-12-26
URL http://163.179.166.130:37566/Mozi.a 2022-12-26
URL http://171.123.146.129:42428/Mozi.m 2022-12-26
URL http://171.38.148.173:57768/Mozi.a 2022-12-26
URL http://171.38.150.36:54299/Mozi.a 2022-12-26
URL http://173.174.70.224:34084/Mozi.m 2022-12-26
URL http://174.96.18.217:41842/bin.sh 2022-12-26
URL http://174.96.18.217:41842/i 2022-12-26
URL http://175.0.51.80:38152/Mozi.a 2022-12-26
URL http://175.0.61.49:43001/bin.sh 2022-12-26
URL http://175.0.61.83:42975/Mozi.m 2022-12-26
URL http://175.10.84.183:48308/Mozi.m 2022-12-26
URL http://175.172.192.250:36457/bin.sh 2022-12-26
URL http://182.112.38.124:46708/Mozi.m 2022-12-26
URL http://182.113.203.251:45659/Mozi.m 2022-12-26
URL http://182.127.153.16:43386/Mozi.m 2022-12-26
URL http://182.127.182.244:34082/Mozi.m 2022-12-26
URL http://183.146.103.99:57268/Mozi.m 2022-12-26
URL http://190.180.153.214:60487/Mozi.m 2022-12-26
URL http://203.176.129.119:49834/Mozi.m 2022-12-26
URL http://210.89.62.228:60321/Mozi.m 2022-12-26
URL http://217.105.11.81:56028/Mozi.m 2022-12-26
URL http://219.157.32.216:56057/Mozi.m 2022-12-26
URL http://219.157.55.52:42641/bin.sh 2022-12-26
URL http://219.157.55.52:42641/i 2022-12-26
URL http://222.137.204.155:35729/Mozi.m 2022-12-26
URL http://222.138.101.64:58858/bin.sh 2022-12-26
URL http://222.138.101.64:58858/i 2022-12-26
URL http://222.139.40.79:52664/bin.sh 2022-12-26
URL http://222.142.242.56:60977/Mozi.m 2022-12-26
URL http://222.241.48.202:49471/i 2022-12-26
URL http://27.158.241.216:46983/Mozi.m 2022-12-26
URL http://27.43.115.110:55657/Mozi.m 2022-12-26
URL http://27.45.91.57:56159/Mozi.a 2022-12-26
URL http://27.54.123.65:38673/Mozi.m 2022-12-26
URL http://39.81.227.183:52730/bin.sh 2022-12-26
URL http://39.89.103.96:60557/i 2022-12-26
URL http://39.90.146.115:40064/bin.sh 2022-12-26
URL http://39.90.147.230:44844/i 2022-12-26
URL http://42.228.43.13:56476/Mozi.m 2022-12-26
URL http://42.234.103.59:52985/Mozi.m 2022-12-26
URL http://42.235.52.14:35694/i 2022-12-26
URL http://58.208.131.98:51993/bin.sh 2022-12-26
URL http://59.93.21.125:49386/Mozi.m 2022-12-26
URL http://59.94.204.54:43866/Mozi.m 2022-12-26
URL http://61.52.192.242:46221/bin.sh 2022-12-26
URL http://61.53.75.169:59271/Mozi.m 2022-12-26
URL http://94.43.10.249:33336/Mozi.m 2022-12-26
URL http://jevereg.amnpardaz.com/ 2022-12-26
domain acequarter.com 2022-12-26
domain acsbace.com 2022-12-26
domain addresseepaper.com 2022-12-26
domain akistan.com 2022-12-26
domain atvcampingtrips.com 2022-12-26
domain aurum-juweliere.de 2022-12-26
domain betxc43.com 2022-12-26
domain biz9holdings.com 2022-12-26
domain boatshowradio.com 2022-12-26
domain carillon7tanphu.com 2022-12-26
domain cdnjs1.com 2022-12-26
domain colod.co.za 2022-12-26
domain cyberchef.io 2022-12-26
domain defenderlive.com 2022-12-26
domain encounter.life 2022-12-26
domain ex3mall.com 2022-12-26
domain featheressay.com 2022-12-26
domain frederikkempe.com 2022-12-26
domain fuyt.org 2022-12-26
domain global-sc-ltd.com 2022-12-26
domain gofootball24h.com 2022-12-26
domain gopackapp.com 2022-12-26
domain grab-indonesia.com 2022-12-26
domain grabberz.com 2022-12-26
domain isns.net 2022-12-26
domain krupskaya.com 2022-12-26
domain lavkabahusa.ru 2022-12-26
domain lazav.co.za 2022-12-26
domain liveupdates2000.com 2022-12-26
domain m-onetrading-jp.com 2022-12-26
domain majul.com 2022-12-26
domain monmex.com 2022-12-26
domain msupdater.com 2022-12-26
domain myrror.co 2022-12-26
domain norin.co.za 2022-12-26
domain potunulit.org 2022-12-26
domain servi22.store 2022-12-26
domain sunnysoft.co.jp 2022-12-26
domain thedresserie.com 2022-12-26
domain thegymmum.com 2022-12-26
domain thuocnam.tk 2022-12-26
domain valenciahillscondo.com 2022-12-26
domain vatra.at 2022-12-26
domain viewsdocs.com 2022-12-26
domain xaker.name 2022-12-26
domain xisac.com 2022-12-26
domain youpayall.com 2022-12-26
domain yoyep.co.za 2022-12-26
domain ypf-serviclub.shop 2022-12-26
domain zerit.top 2022-12-26
hostname 178-79-132-238.ip.linodeusercontent.com 2022-12-26
hostname 238.ip.linodeusercontent.com 2022-12-26
hostname 243-210.fiber.net.id 2022-12-26
hostname 3jkpvk2m8y.dattolocal.net 2022-12-26
hostname 4-49629.portmap.host 2022-12-26
hostname 5e3ynj65sq.ibomma.link 2022-12-26
hostname api-stage.youpayall.com 2022-12-26
hostname api.uxfeedback.ru 2022-12-26
hostname apkscan.nviso.be 2022-12-26
hostname blog.smartbrain.io 2022-12-26
hostname booking.msg.bluhotels.com 2022-12-26
hostname cdn.plyr.io 2022-12-26
hostname elx01.knas.systems 2022-12-26
hostname jevereg.amnpardaz.com 2022-12-26
hostname js.compute-pipe.com 2022-12-26
hostname mail.allsafetyrails.com 2022-12-26
hostname mail.kubis.ru 2022-12-26
hostname mail.luminousasia.com 2022-12-26
hostname os.downloadapi.com 2022-12-26
hostname os.fun-media-player.com 2022-12-26
hostname os2.fun-media-player.com 2022-12-26
hostname out15-45.antispamcloud.com 2022-12-26
hostname postback.trafficmotor.com 2022-12-26
hostname rtb-eu-warsaw.intent.ai 2022-12-26
hostname rust.compute-pipe.com 2022-12-26
hostname server.mojazine.com 2022-12-26
hostname serverless-benchmarks-js.compute-pipe.com 2022-12-26
hostname serverless-benchmarks-rust.compute-pipe.com 2022-12-26
hostname smtp.ocimumjournals.com 2022-12-26
hostname smtp.ocimumjournals.net 2022-12-26
hostname srv41.niagahoster.com 2022-12-26
hostname ticket.ipv10.eu 2022-12-26
hostname widget-api.uxfeedback.ru 2022-12-26
hostname www.conchoninn.com 2022-12-26
hostname www1.santoriniserver.com 2022-12-26
hostname ys.kic-software.de 2022-12-26