PULSE NAME
Threat Intel Report - W4-2023.pdf
WHITE aa00643640@techmahindra.com 2023-01-23 Modified: 2023-02-22
208
IOCs
HIGH VOLUME
This is a cyber-advisory document, presenting the compiled cyber threat intelligence sourced from various channels and tools. These are weekly base recommendations to all IT Administrators and CISOs to take corrective actions to upgrade their security infrastructure against newly identified threats and attacks in this week. Security is a continuous process, and it has to be reviewed and audited on a continuous manner through manual or automated tools. These details may be used as an additional layer to verify the current security posture of an organization against latest cyber trends.
Indicators of Compromise (208)
All domain FileHash-MD5 FileHash-SHA1 FileHash-SHA256 CVE URL hostname
TYPEINDICATORDESCRIPTIONCREATED
domain abibiall.com 2023-01-23
domain fresherlights.com 2023-01-23
domain librchichelpai.shop 2023-01-23
domain uaery.top 2023-01-23
domain winnlinne.com 2023-01-23
FileHash-MD5 024def417ae82e4c14a313a153d8984c MD5 of 94e2fe84aeea801b0ddcf49c74375bb23ec242d30edc39fccd296ed2e7b64f72 2023-01-23
FileHash-MD5 616af1ef5dbf89cfc93303575910be17 MD5 of 93b0d7f44fe52ecc63fc27d48da7876ee50872e2471591c0304ca21d0ccc68d6 2023-01-23
FileHash-SHA1 0f4dbbc0347950758ba3daed9435f871331a2938 SHA1 of 93b0d7f44fe52ecc63fc27d48da7876ee50872e2471591c0304ca21d0ccc68d6 2023-01-23
FileHash-SHA1 ce7c071cbd60c7864a1e8a99f7496d3ad166a3ae SHA1 of 94e2fe84aeea801b0ddcf49c74375bb23ec242d30edc39fccd296ed2e7b64f72 2023-01-23
FileHash-SHA256 93b0d7f44fe52ecc63fc27d48da7876ee50872e2471591c0304ca21d0ccc68d6 2023-01-23
FileHash-SHA256 94e2fe84aeea801b0ddcf49c74375bb23ec242d30edc39fccd296ed2e7b64f72 2023-01-23
CVE CVE-2022-41080 2023-01-23
CVE CVE-2022-42475 2023-01-23
FileHash-MD5 56aa80bac2e533ee3332e29ed33a144c MD5 of 6d8503cf760a86e245dde67d8ba7e338806cb0eef0d94c1904cbf84ec9e4e96e 2023-01-23
FileHash-MD5 95bd1cf994a774729c19f850de50299c MD5 of a3471688bb87789c9aaed8dd12e2a79356c46eea6b181786adcab310a75787f8 2023-01-23
FileHash-MD5 9843219cf85f24b82c58989f4d739217 MD5 of acf0a39be776853a0eb482fb11ad415291ed137fc4745ba58d4bbdae85c696e0 2023-01-23
FileHash-MD5 9ee9dcf9c878d23c4b1b92f73ac50ff4 MD5 of 4ca9d922b73c939978d33effd01f5e58928a0390cd41980455db096a5ca61255 2023-01-23
FileHash-MD5 a5b00cb8a3ff27d446b0662cb417a157 MD5 of 7b9a9c4a56b756b499574a593ce6c5632f8a513abc4fd9a61844f211ffc672c8 2023-01-23
FileHash-MD5 d253e2c40881972952a5acd8a42de333 MD5 of 989cc036da24e0e38ad614663dcf2864a890b109144d2f4db8342d18d3bb9c6b 2023-01-23
FileHash-MD5 ff0ac8d6c0a5990dd442f677315e6c4b MD5 of eb5ec9cf758bd526db090f9290d323201911b4181c3bfeb3ebd1f1af8be19285 2023-01-23
FileHash-SHA1 1b27037c17c61163f232a71a64842c3265e423cb SHA1 of a3471688bb87789c9aaed8dd12e2a79356c46eea6b181786adcab310a75787f8 2023-01-23
FileHash-SHA1 4358324f102afd639d6b1ec92521b37f31ca5d1c SHA1 of eb5ec9cf758bd526db090f9290d323201911b4181c3bfeb3ebd1f1af8be19285 2023-01-23
FileHash-SHA1 505a59a441358664751fb92a3c358e87b49026eb SHA1 of 4ca9d922b73c939978d33effd01f5e58928a0390cd41980455db096a5ca61255 2023-01-23
FileHash-SHA1 62846a54d85a9905ea0f263f51cd270e898e69b1 SHA1 of 989cc036da24e0e38ad614663dcf2864a890b109144d2f4db8342d18d3bb9c6b 2023-01-23
FileHash-SHA1 668d5af0b66c94c2dcc872133404883694fac527 SHA1 of acf0a39be776853a0eb482fb11ad415291ed137fc4745ba58d4bbdae85c696e0 2023-01-23
FileHash-SHA1 72e9c9b07b5dbfe3a7fa8a2fb2f4df1526cc5a67 SHA1 of 6d8503cf760a86e245dde67d8ba7e338806cb0eef0d94c1904cbf84ec9e4e96e 2023-01-23
FileHash-SHA1 cb9b0ebb847e00dad2e60c31a50fb539f642beee SHA1 of 7b9a9c4a56b756b499574a593ce6c5632f8a513abc4fd9a61844f211ffc672c8 2023-01-23
FileHash-SHA256 263bbaae6ed67f8d86ded09cfd7a87dfdd893ce2715a4e112fb8790c2ab1fe8b 2023-01-23
FileHash-SHA256 4ca9d922b73c939978d33effd01f5e58928a0390cd41980455db096a5ca61255 2023-01-23
FileHash-SHA256 6d8503cf760a86e245dde67d8ba7e338806cb0eef0d94c1904cbf84ec9e4e96e 2023-01-23
FileHash-SHA256 7b9a9c4a56b756b499574a593ce6c5632f8a513abc4fd9a61844f211ffc672c8 2023-01-23
FileHash-SHA256 989cc036da24e0e38ad614663dcf2864a890b109144d2f4db8342d18d3bb9c6b 2023-01-23
FileHash-SHA256 a3471688bb87789c9aaed8dd12e2a79356c46eea6b181786adcab310a75787f8 2023-01-23
FileHash-SHA256 acf0a39be776853a0eb482fb11ad415291ed137fc4745ba58d4bbdae85c696e0 2023-01-23
FileHash-SHA256 c8b995746f09979fc1ccd83a08dab8913aa88b9036b584cc60d72029e867dd1d 2023-01-23
FileHash-SHA256 e1baa4460e56c15343780e36f4a33aedb72cec1e91d69b26985d25f90d861d8d 2023-01-23
FileHash-SHA256 eb5ec9cf758bd526db090f9290d323201911b4181c3bfeb3ebd1f1af8be19285 2023-01-23
FileHash-SHA256 f2eaeba4b3b7016304f9c348f973bf57a80dce2969f3a814250a0a506df4a5eb 2023-01-23
URL http://110.178.33.181:35139/Mozi.m 2023-01-23
URL http://110.186.230.5:34475/Mozi.m 2023-01-23
URL http://111.73.99.171:54252/i 2023-01-23
URL http://112.248.106.133:49642/bin.sh 2023-01-23
URL http://112.248.247.246:39088/Mozi.m 2023-01-23
URL http://112.248.247.246:39088/i 2023-01-23
URL http://114.227.191.199:55363/Mozi.a 2023-01-23
URL http://115.49.127.26:51795/i 2023-01-23
URL http://115.54.100.100:57744/Mozi.m 2023-01-23
URL http://115.54.188.118:35506/bin.sh 2023-01-23
URL http://115.54.188.118:35506/i 2023-01-23
URL http://115.58.135.184:57887/i 2023-01-23
URL http://115.61.135.86:34333/Mozi.m 2023-01-23
URL http://116.5.207.92:43851/Mozi.m 2023-01-23
URL http://116.75.247.157:56624/Mozi.m 2023-01-23
URL http://117.193.119.157:46523/Mozi.m 2023-01-23
URL http://117.194.144.56:41030/bin.sh 2023-01-23
URL http://117.194.144.56:41030/i 2023-01-23
URL http://117.194.167.240:36617/Mozi.m 2023-01-23
URL http://117.194.168.252:41704/Mozi.m 2023-01-23
URL http://117.194.174.174:47759/i 2023-01-23
URL http://117.195.90.219:59512/Mozi.m 2023-01-23
URL http://117.201.196.12:52114/i 2023-01-23
URL http://117.207.227.172:38692/i 2023-01-23
URL http://117.208.139.99:53602/Mozi.m 2023-01-23
URL http://117.208.237.21:53987/Mozi.m 2023-01-23
URL http://117.214.211.39:40933/Mozi.a 2023-01-23
URL http://117.215.212.3:37798/Mozi.m 2023-01-23
URL http://117.215.212.3:37798/i 2023-01-23
URL http://117.221.183.148:55667/Mozi.m 2023-01-23
URL http://117.248.48.76:42017/Mozi.m 2023-01-23
URL http://117.248.50.14:33994/bin.sh 2023-01-23
URL http://117.248.50.14:33994/i 2023-01-23
URL http://117.82.103.186:17117/.i 2023-01-23
URL http://119.179.236.72:46077/i 2023-01-23
URL http://120.83.84.115:57033/Mozi.m 2023-01-23
URL http://123.11.53.12:54901/Mozi.m 2023-01-23
URL http://123.11.97.111:39474/i 2023-01-23
URL http://123.14.33.110:41978/Mozi.m 2023-01-23
URL http://123.4.76.93:40278/bin.sh 2023-01-23
URL http://123.4.76.93:40278/i 2023-01-23
URL http://123.8.163.203:34229/Mozi.m 2023-01-23
URL http://124.230.229.174:60799/Mozi.m 2023-01-23
URL http://124.235.130.110:45534/i 2023-01-23
URL http://125.115.94.46:58393/Mozi.a 2023-01-23
URL http://125.47.85.61:43248/bin.sh 2023-01-23
URL http://125.47.85.61:43248/i 2023-01-23
URL http://141.126.177.8:34461/bin.sh 2023-01-23
URL http://171.35.243.101:59466/Mozi.m 2023-01-23
URL http://180.115.124.112:31813/.i 2023-01-23
URL http://182.112.30.50:40621/bin.sh 2023-01-23
URL http://182.112.30.50:40621/i 2023-01-23
URL http://182.116.37.151:45317/Mozi.m 2023-01-23
URL http://182.116.66.204:55849/Mozi.m 2023-01-23
URL http://182.116.97.250:54221/Mozi.m 2023-01-23
URL http://182.118.186.87:54938/bin.sh 2023-01-23
URL http://182.126.108.145:51720/bin.sh 2023-01-23
URL http://182.126.108.145:51720/i 2023-01-23
URL http://182.127.69.39:37306/bin.sh 2023-01-23
URL http://182.127.69.39:37306/i 2023-01-23
URL http://211.50.17.115:48896/Mozi.m 2023-01-23
URL http://219.154.110.95:34176/Mozi.m 2023-01-23
URL http://219.154.123.49:41478/Mozi.m 2023-01-23
URL http://219.155.23.32:34337/Mozi.m 2023-01-23
URL http://219.156.190.72:58900/i 2023-01-23
URL http://219.157.178.62:37371/Mozi.m 2023-01-23
URL http://221.1.227.82:49757/bin.sh 2023-01-23
URL http://222.137.0.236:48510/Mozi.m 2023-01-23
URL http://222.138.109.90:35899/i 2023-01-23
URL http://222.139.41.77:39869/i 2023-01-23
URL http://223.9.127.191:31245/.i 2023-01-23
URL http://27.208.157.86:38690/Mozi.m 2023-01-23
URL http://27.38.175.120:38335/bin.sh 2023-01-23
URL http://27.41.17.97:51909/Mozi.a 2023-01-23
URL http://27.45.33.206:49010/Mozi.a 2023-01-23
URL http://27.45.93.213:53200/Mozi.a 2023-01-23
URL http://27.45.93.213:53200/Mozi.m 2023-01-23
URL http://36.48.42.205:41071/Mozi.m 2023-01-23
URL http://38.43.193.191:58639/Mozi.m 2023-01-23
URL http://39.73.111.192:39282/Mozi.a 2023-01-23
URL http://39.76.57.40:54240/bin.sh 2023-01-23
URL http://39.76.57.40:54240/i 2023-01-23
URL http://42.231.209.109:56595/bin.sh 2023-01-23
URL http://42.234.235.0:35685/i 2023-01-23
URL http://42.235.184.158:35846/Mozi.m 2023-01-23
URL http://42.235.44.7:42538/Mozi.m 2023-01-23
URL http://42.58.147.140:16565/bin.sh 2023-01-23
URL http://42.58.147.140:16565/i 2023-01-23
URL http://58.252.181.209:58038/Mozi.m 2023-01-23
URL http://59.92.163.208:43843/Mozi.m 2023-01-23
URL http://59.99.128.196:37950/Mozi.m 2023-01-23
URL http://59.99.130.152:60019/i 2023-01-23
URL http://59.99.142.236:49949/Mozi.m 2023-01-23
URL http://61.1.248.113:33022/Mozi.m 2023-01-23
URL http://61.168.142.56:45211/Mozi.m 2023-01-23
URL http://61.53.135.91:49011/Mozi.m 2023-01-23
URL http://61.53.90.178:58798/i 2023-01-23
URL http://63.227.55.116:52887/Mozi.m 2023-01-23
URL http://65.172.242.212:44696/i 2023-01-23
URL http://85.105.129.64:55844/i 2023-01-23
URL http://jevereg.amnpardaz.com/ 2023-01-23
domain astdg.top 2023-01-23
domain breign.org 2023-01-23
domain csrs-fers.com 2023-01-23
domain derioswinf.org 2023-01-23
domain ders.org 2023-01-23
domain derweekge.com 2023-01-23
domain dioxvoxll.com 2023-01-23
domain drampik.com 2023-01-23
domain erzafudatar.tk 2023-01-23
domain ex3mall.com 2023-01-23
domain frederikkempe.com 2023-01-23
domain fuyt.org 2023-01-23
domain gayworld.at 2023-01-23
domain grabberz.com 2023-01-23
domain kotob.top 2023-01-23
domain lumbcious.net 2023-01-23
domain majul.com 2023-01-23
domain mightys.at 2023-01-23
domain ohax.com 2023-01-23
domain precisionsec.com 2023-01-23
domain psbl.org 2023-01-23
domain reign.org 2023-01-23
domain securebiz.org 2023-01-23
domain siders.org 2023-01-23
domain spaceris.com 2023-01-23
domain tbpws.top 2023-01-23
domain termingo.de 2023-01-23
domain timetogof.at 2023-01-23
domain trigonevo.com 2023-01-23
domain tzgl.org 2023-01-23
domain vatra.at 2023-01-23
domain wrrst.top 2023-01-23
domain xaker.name 2023-01-23
domain xisac.com 2023-01-23
domain zerit.top 2023-01-23
hostname 108-174-118-86.cybernet1.com 2023-01-23
hostname association-secondary.at.ply.gg 2023-01-23
hostname booking.msg.bluhotels.com 2023-01-23
hostname considered-drugs.at.ply.gg 2023-01-23
hostname directly-clearance.at.ply.gg 2023-01-23
hostname displayed.at.playit.gg 2023-01-23
hostname has-list.at.playit.gg 2023-01-23
hostname hello.campizos.com 2023-01-23
hostname jevereg.amnpardaz.com 2023-01-23
hostname lamin.mebelialex.com 2023-01-23
hostname lc2.shztrk.com 2023-01-23
hostname mail.buro.com.pe 2023-01-23
hostname mail.mwri.gov.eg 2023-01-23
hostname mta-132b.oxsus-vadesecure.net 2023-01-23
hostname njxyro.ddns.net 2023-01-23
hostname ns1.tagbytag2.com 2023-01-23
hostname rather-twisted.at.ply.gg 2023-01-23
hostname required-displayed.at.playit.gg 2023-01-23
hostname rtb-eu-warsaw.intent.ai 2023-01-23
hostname searchkn1.sima-land.ru 2023-01-23
hostname secondary.at.ply.gg 2023-01-23
hostname smartermail.bertina.us 2023-01-23
hostname software-villages.at.playit.gg 2023-01-23
hostname string-accepted.at.playit.gg 2023-01-23
hostname support-garlic.at.ply.gg 2023-01-23
hostname value-careful.at.playit.gg 2023-01-23
hostname vcctggqm3t.dattolocal.net 2023-01-23
hostname villages.at.playit.gg 2023-01-23
hostname ww1.gmai.com 2023-01-23
hostname www.digroup2894.com 2023-01-23
hostname www.meg-lumbcious.net 2023-01-23
hostname www.syrhousing.info 2023-01-23
hostname www.thecoyotebox.co 2023-01-23
hostname www.thecoyotebox.com 2023-01-23