PULSE NAME
Caution When Using 3CX DesktopApp (CVE-2023-29059) - ASEC BLOG
WHITE jeffchandy 2023-04-11 Modified: 2023-04-11
104
IOCs
HIGH VOLUME
A security flaw in the 3CX DesktopApp has been identified and the company is preparing to issue a new certificate to protect users from the threat. £2.5m of malware.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
ASD OSX.Agent C5403954 C5403110 C5403102
Indicators of Compromise (104)
All CVE FileHash-MD5 FileHash-SHA1 FileHash-SHA256 domain URL
TYPEINDICATORDESCRIPTIONCREATED
CVE CVE-2023-29059 2023-04-11
FileHash-MD5 0eeb1c0133eb4d571178b2d9d14ce3e9 MD5 of 59e1edf4d82fae4978e97512b0331b7eb21dd4b838b850ba46794d9c7a2c0983 2023-04-11
FileHash-MD5 27b134af30f4a86f177db2f2555fe01d MD5 of c485674ee63ec8d4e8fde9800788175a8b02d3f9416d0e763360fff7f8eb4e02 2023-04-11
FileHash-MD5 2fdf61fdfd649f8bbf5730307a0ab5d1 MD5 of fee4f9dabc094df24d83ec1a8c4e4ff573e5d9973caa676f58086c99561382d7 2023-04-11
FileHash-MD5 5729fb29e3a7a90d2528e3357bd15a4b MD5 of 5407cda7d3a75e7b1e030b1f33337a56f293578ffa8b3ae19c671051ed314290 2023-04-11
FileHash-MD5 6426fe4dc604c7f1784ed1d48ab4ffc8 MD5 of aa4e398b3bd8645016d8090ffc77d15f926a8e69258642191deb4e68688ff973 2023-04-11
FileHash-MD5 660ea9b8205fbd2da59fefd26ae5115c MD5 of a64fa9f1c76457ecc58402142a8728ce34ccba378c17318b3340083eeb7acc67 2023-04-11
FileHash-MD5 71d5b9bfd6bf37ff5aa9752b2b6d5af1 MD5 of 4e08e4ffc699e0a1de4a5225a0b4920933fbb9cf123cde33e1674fde6d61444f 2023-04-11
FileHash-MD5 74bc2d0b6680faa1a5a76b27e5479cbc MD5 of 7986bbaee8940da11ce089383521ab420c443ab7b15ed42aed91fd31ce833896 2023-04-11
FileHash-MD5 7faea2b01796b80d180399040bb69835 MD5 of 8ab3a5eaaf8c296080fadf56b265194681d7da5da7c02562953a4cb60e147423 2023-04-11
FileHash-MD5 82187ad3f0c6c225e2fba0c867280cc9 MD5 of 11be1803e2e307b647a8a7e02d128335c448ff741bf06bf52b332e0bbf423b03 2023-04-11
FileHash-MD5 f3d4144860ca10ba60f7ef4d176cc736 MD5 of aa124a4b4df12b34e74ee7f6c683b2ebec4ce9a8edcf9be345823b4fdcf5d868 2023-04-11
FileHash-SHA1 188754814b37927badc988b45b7c7f7d6b4c8dd3 SHA1 of c485674ee63ec8d4e8fde9800788175a8b02d3f9416d0e763360fff7f8eb4e02 2023-04-11
FileHash-SHA1 19f4036f5cd91c5fc411afc4359e32f90caddaac SHA1 of 5407cda7d3a75e7b1e030b1f33337a56f293578ffa8b3ae19c671051ed314290 2023-04-11
FileHash-SHA1 20d554a80d759c50d6537dd7097fed84dd258b3e SHA1 of 11be1803e2e307b647a8a7e02d128335c448ff741bf06bf52b332e0bbf423b03 2023-04-11
FileHash-SHA1 3b3e778b647371262120a523eb873c20bb82beaf SHA1 of 8ab3a5eaaf8c296080fadf56b265194681d7da5da7c02562953a4cb60e147423 2023-04-11
FileHash-SHA1 3b88cda62cdd918b62ef5aa8c5a73a46f176d18b SHA1 of aa4e398b3bd8645016d8090ffc77d15f926a8e69258642191deb4e68688ff973 2023-04-11
FileHash-SHA1 64ab912d0af35c01355430d85dd4181f25e88838 SHA1 of 4e08e4ffc699e0a1de4a5225a0b4920933fbb9cf123cde33e1674fde6d61444f 2023-04-11
FileHash-SHA1 769383fc65d1386dd141c960c9970114547da0c2 SHA1 of a64fa9f1c76457ecc58402142a8728ce34ccba378c17318b3340083eeb7acc67 2023-04-11
FileHash-SHA1 b2a89eebb5be61939f5458a024c929b169b4dc85 SHA1 of fee4f9dabc094df24d83ec1a8c4e4ff573e5d9973caa676f58086c99561382d7 2023-04-11
FileHash-SHA1 bea77d1e59cf18dce22ad9a2fad52948fd7a9efa SHA1 of aa124a4b4df12b34e74ee7f6c683b2ebec4ce9a8edcf9be345823b4fdcf5d868 2023-04-11
FileHash-SHA1 bf939c9c261d27ee7bb92325cc588624fca75429 SHA1 of 7986bbaee8940da11ce089383521ab420c443ab7b15ed42aed91fd31ce833896 2023-04-11
FileHash-SHA1 bfecb8ce89a312d2ef4afc64a63847ae11c6f69e SHA1 of 59e1edf4d82fae4978e97512b0331b7eb21dd4b838b850ba46794d9c7a2c0983 2023-04-11
FileHash-SHA256 11be1803e2e307b647a8a7e02d128335c448ff741bf06bf52b332e0bbf423b03 2023-04-11
FileHash-SHA256 210c9882eba94198274ebc787fe8c88311af24932832a7fe1f1ca0261f815c3d 2023-04-11
FileHash-SHA256 2487b4e3c950d56fb15316245b3c51fbd70717838f6f82f32db2efcc4d9da6de 2023-04-11
FileHash-SHA256 268d4e399dbbb42ee1cd64d0da72c57214ac987efbb509c46cc57ea6b214beca 2023-04-11
FileHash-SHA256 2c9957ea04d033d68b769f333a48e228c32bcf26bd98e51310efd48e80c1789f 2023-04-11
FileHash-SHA256 4e08e4ffc699e0a1de4a5225a0b4920933fbb9cf123cde33e1674fde6d61444f 2023-04-11
FileHash-SHA256 5009c7d1590c1f8c05827122172583ddf924c53b55a46826abf66da46725505a 2023-04-11
FileHash-SHA256 5407cda7d3a75e7b1e030b1f33337a56f293578ffa8b3ae19c671051ed314290 2023-04-11
FileHash-SHA256 59e1edf4d82fae4978e97512b0331b7eb21dd4b838b850ba46794d9c7a2c0983 2023-04-11
FileHash-SHA256 5a017652531eebfcef7011c37a04f11621d89084f8f9507201f071ce359bea3f 2023-04-11
FileHash-SHA256 7986bbaee8940da11ce089383521ab420c443ab7b15ed42aed91fd31ce833896 2023-04-11
FileHash-SHA256 87c5d0c93b80acf61d24e7aaf0faae231ab507ca45483ad3d441b5d1acebc43c 2023-04-11
FileHash-SHA256 8ab3a5eaaf8c296080fadf56b265194681d7da5da7c02562953a4cb60e147423 2023-04-11
FileHash-SHA256 8c0b7d90f14c55d4f1d0f17e0242efd78fd4ed0c344ac6469611ec72defa6b2d 2023-04-11
FileHash-SHA256 a541e5fc421c358e0a2b07bf4771e897fb5a617998aa4876e0e1baa5fbb8e25c 2023-04-11
FileHash-SHA256 a64fa9f1c76457ecc58402142a8728ce34ccba378c17318b3340083eeb7acc67 2023-04-11
FileHash-SHA256 aa124a4b4df12b34e74ee7f6c683b2ebec4ce9a8edcf9be345823b4fdcf5d868 2023-04-11
FileHash-SHA256 aa4e398b3bd8645016d8090ffc77d15f926a8e69258642191deb4e68688ff973 2023-04-11
FileHash-SHA256 c13d49ed325dec9551906bafb6de9ec947e5ff936e7e40877feb2ba4bb176396 2023-04-11
FileHash-SHA256 c485674ee63ec8d4e8fde9800788175a8b02d3f9416d0e763360fff7f8eb4e02 2023-04-11
FileHash-SHA256 c62dce8a77d777774e059cf1720d77c47b97d97c3b0cf43ade5d96bf724639bd 2023-04-11
FileHash-SHA256 d0f1984b4fe896d0024533510ce22d71e05b20bad74d53fae158dc752a65782e 2023-04-11
FileHash-SHA256 d459aa0a63140ccc647e9026bfd1fccd4c310c262a88896c57bbe3b6456bd090 2023-04-11
FileHash-SHA256 d51a790d187439ce030cf763237e992e9196e9aa41797a94956681b6279d1b9a 2023-04-11
FileHash-SHA256 dde03348075512796241389dfea5560c20a3d2a2eac95c894e7bbed5e85a0acc 2023-04-11
FileHash-SHA256 e059c8c8b01d6f3af32257fc2b6fe188d5f4359c308b3684b1e0db2071c3425c 2023-04-11
FileHash-SHA256 e6bbc33815b9f20b0cf832d7401dd893fbc467c800728b5891336706da0dbcec 2023-04-11
FileHash-SHA256 f1bf4078141d7ccb4f82e3f4f1c3571ee6dd79b5335eb0e0464f877e6e6e3182 2023-04-11
FileHash-SHA256 f47c883f59a4802514c57680de3f41f690871e26f250c6e890651ba71027e4d3 2023-04-11
FileHash-SHA256 fad482ded2e25ce9e1dd3d3ecc3227af714bdfbbde04347dbc1b21d6a3670405 2023-04-11
FileHash-SHA256 fee4f9dabc094df24d83ec1a8c4e4ff573e5d9973caa676f58086c99561382d7 2023-04-11
domain akamaicontainer.com 2023-04-11
domain akamaitechcloudservices.com 2023-04-11
domain azuredeploystore.com 2023-04-11
domain azureonlinecloud.com 2023-04-11
domain azureonlinestorage.com 2023-04-11
domain dunamistrd.com 2023-04-11
domain glcloudservice.com 2023-04-11
domain journalide.org 2023-04-11
domain msedgepackageinfo.com 2023-04-11
domain msstorageazure.com 2023-04-11
domain msstorageboxes.com 2023-04-11
domain officeaddons.com 2023-04-11
domain officestoragebox.com 2023-04-11
domain pbxcloudeservices.com 2023-04-11
domain pbxphonenetwork.com 2023-04-11
domain pbxsources.com 2023-04-11
domain qwepoi123098.com 2023-04-11
domain sbmsa.wiki 2023-04-11
domain sourceslabs.com 2023-04-11
domain visualstudiofactory.com 2023-04-11
domain zacharryblogs.com 2023-04-11
URL https://msedgepackageinfo.com/microsoft-edge 2023-04-11
URL https://officeaddons.com/technologies 2023-04-11
URL http://akamaitechcloudservices.com/v2/fileapi 2023-04-11
URL http://azuredeploystore.com/cloud/images 2023-04-11
URL http://azureonlinestorage.com/google/storage 2023-04-11
URL http://glcloudservice.com/v1/status 2023-04-11
URL http://msedgepackageinfo.com/ms-webview 2023-04-11
URL http://msstorageazure.com/analysis 2023-04-11
URL http://msstorageboxes.com/xbox 2023-04-11
URL http://officeaddons.com/quality 2023-04-11
URL http://officestoragebox.com/api/biosync 2023-04-11
URL http://pbxcloudeservices.com/network 2023-04-11
URL http://pbxphonenetwork.com/phone 2023-04-11
URL http://pbxsources.com/queue 2023-04-11
URL http://sourceslabs.com/status 2023-04-11
URL http://visualstudiofactory.com/groupcore 2023-04-11
URL http://zacharryblogs.com/xmlquery 2023-04-11
URL https://akamaitechcloudservices.com/v2/storage 2023-04-11
URL https://azuredeploystore.com/cloud/services 2023-04-11
URL https://azureonlinestorage.com/azure/storage 2023-04-11
URL https://glcloudservice.com/v1/console 2023-04-11
URL https://msstorageazure.com/window 2023-04-11
URL https://msstorageboxes.com/office 2023-04-11
URL https://officestoragebox.com/api/session 2023-04-11
URL https://pbxcloudeservices.com/phonesystem 2023-04-11
URL https://pbxsources.com/exchange 2023-04-11
URL https://sourceslabs.com/downloads 2023-04-11
URL https://visualstudiofactory.com/workload 2023-04-11
URL https://zacharryblogs.com/feed 2023-04-11