PULSE NAME
Iranian threat agent OilRig delivers digitally signed malware, impersonate University of Oxford
WHITE StreamMiningEx 2023-12-06 Modified: 2023-12-06
93
IOCs
HIGH VOLUME
Indicators of Compromise (93)
All domain hostname FileHash-MD5 email
TYPEINDICATORDESCRIPTIONCREATED
domain update-kernal.net 2023-12-06
domain upgradesystems.info 2023-12-06
domain googleupdate.download 2023-12-06
domain gaccountservices.com 2023-12-06
domain acount-google.ml 2023-12-06
domain main-google-resolver.com 2023-12-06
domain it-service.in 2023-12-06
domain tecsupport.in 2023-12-06
domain supportvpn.net 2023-12-06
domain updater.li 2023-12-06
domain technical-google.com 2023-12-06
domain kernel.ws 2023-12-06
domain googlednsupdate.tk 2023-12-06
domain shellexperiencehost.in 2023-12-06
domain oxford-careers.com 2023-12-06
domain admin-supporter.com 2023-12-06
domain dnsupdateservers.net 2023-12-06
domain oxford-employee.com 2023-12-06
domain vodafoneco.com 2023-12-06
domain hell-tec.in 2023-12-06
domain malamvpn.com 2023-12-06
domain check-system.org 2023-12-06
domain microsoft-kernels-pdate.net 2023-12-06
domain net-support.info 2023-12-06
domain oxford.in 2023-12-06
domain check-updater.org 2023-12-06
domain kernel-update.com 2023-12-06
domain liuedu-lb.in 2023-12-06
domain outlookteam.live 2023-12-06
domain taldor.org 2023-12-06
domain accountsupportteam.com 2023-12-06
domain oxford-symposia.com 2023-12-06
domain updateorg.com 2023-12-06
domain dns-bind9.com 2023-12-06
hostname ns2.sys-update.com 2023-12-06
hostname ns1.shalaghlagh.tk 2023-12-06
hostname app.microsoftupdate.mom 2023-12-06
hostname www.googleaccountsservices.com 2023-12-06
hostname www.windows-dns-resolver.org 2023-12-06
hostname ns1.winodwsupdates.me 2023-12-06
hostname f83zx-138iklspool-arp.googleaccountsservices.com 2023-12-06
hostname 9660d0a.winodwsupdates.me 2023-12-06
hostname ns2.dnsrecordsolver.tk 2023-12-06
hostname ns1.windows-dns-resolver.org 2023-12-06
hostname ns2.winodwsupdates.me 2023-12-06
hostname ns11.windows-dns-resolver.org 2023-12-06
hostname ns2.microsoftupdate.mom 2023-12-06
hostname ns1.microsoftupdate.mom 2023-12-06
hostname ns2.shalaghlagh.tk 2023-12-06
hostname 138iklspool-arp.googleaccountsservices.com 2023-12-06
hostname zzs00000tdy30.egoogle.org 2023-12-06
hostname ns1.dnsrecordsolver.tk 2023-12-06
hostname ns2.windows-dns-resolver.org 2023-12-06
hostname ns2.egoogle.org 2023-12-06
hostname nsn1.winodwsupdates.me 2023-12-06
hostname ns2.applicationframehost.in 2023-12-06
hostname ns1.egoogle.org 2023-12-06
hostname www.microsoftupdate.mom 2023-12-06
hostname ns1.applicationframehost.in 2023-12-06
hostname www.winodwsupdates.me 2023-12-06
hostname 87pqxz159.dockerjsbin.com 2023-12-06
FileHash-MD5 1c23b3f11f933d98febfd5a92eb5c715 2023-12-06
FileHash-MD5 0235605e4795208724409e1626c6117c 2023-12-06
FileHash-MD5 5713c3c01067c91771ac70e193ef5419 2023-12-06
FileHash-MD5 6a65d762fb548d2dc56cfde4842a4d3c 2023-12-06
FileHash-MD5 0302e72fafd6fa8143943fdf2efc592d 2023-12-06
FileHash-MD5 0bf3cf83ac7d83d6943afd02c28d286a 2023-12-06
FileHash-MD5 456a45b59a7588294cf25a5cab4a9821 2023-12-06
FileHash-MD5 72e046753f0496140b4aa389aee2e300 2023-12-06
FileHash-MD5 197c018922237828683783654d3c632a 2023-12-06
FileHash-MD5 1792cdd0c5397ff5df445d73276d1a50 2023-12-06
FileHash-MD5 3a5fcba80c1fd685c4b5085d9d474118 2023-12-06
FileHash-MD5 262bc259682cb48ce66a80dcc9a5d587 2023-12-06
FileHash-MD5 20b8dc0f4f5758afdaf442bad3552bf5 2023-12-06
FileHash-MD5 f76443385fef159e6b73ad6bf7f086d6 2023-12-06
FileHash-MD5 f77ee804de304f7c3ea6b87824684b33 2023-12-06
FileHash-MD5 7528c387f853d96420cf7e20f2ad1d32 2023-12-06
FileHash-MD5 adb1e854b0a713f6ffd3eace6431c81d 2023-12-06
FileHash-MD5 bd7d2efdb2a0f352c4b74f2b82e3c7bc 2023-12-06
FileHash-MD5 d50ab63f4034c6f5eb356e3326320e66 2023-12-06
FileHash-MD5 f8ce7e356e09de6a48dca9e51421b6f6 2023-12-06
FileHash-MD5 cd46960e865dc06596a1b68be427ac7a 2023-12-06
FileHash-MD5 bdafd1fb08d5ed0073b3c0605e1e4581 2023-12-06
email megandoherty@teleworm.us 2023-12-06
email zak.s.whittaker@gmail.com 2023-12-06
email masha.sharon@inbox.ru 2023-12-06
email ranjan1984rajiv@gmail.com 2023-12-06
email nism2020@yandex.com 2023-12-06
email sara.patrik@chmail.ir 2023-12-06
email javamaker@inbox.ru 2023-12-06
email zack.patrik@mail.com 2023-12-06
email jason.hasaki@hotmail.com 2023-12-06
email salim.ahmed.alqahtani@mail.ru 2023-12-06