PULSE NAME
CALISTO doxxing: Sekoia.io findings concurs to Reuters’ investigation on FSB-related Andrey Korinets
WHITE AlienVault 2023-12-21 Modified: 2024-01-20
54
IOCs
HIGH VOLUME
In the wake of Reuters’s sanctions against two Russian nationals, Sekoia.io published a technical investigation that confirmed that Andrey Korinets was linked to a known phishing network.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (54)
All domain email hostname
TYPEINDICATORDESCRIPTIONCREATED
domain accounts-mail.asia 2023-12-21
domain anabol.in 2023-12-21
domain auth-login.top 2023-12-21
domain authentification-request.top 2023-12-21
domain be-strong.org 2023-12-21
domain drive-aoi.icu 2023-12-21
domain drive-meet-goodle.ru 2023-12-21
domain emailapp.pw 2023-12-21
domain en-microsofl.live 2023-12-21
domain en-office365.club 2023-12-21
domain eu-office365.co 2023-12-21
domain eu-office365.com 2023-12-21
domain expert-service.tech 2023-12-21
domain file-sharing.online 2023-12-21
domain file-sharing.site 2023-12-21
domain gmail-techdoc.pw 2023-12-21
domain google-plus.top 2023-12-21
domain hghshop.top 2023-12-21
domain icloud-service.pw 2023-12-21
domain live-login.info 2023-12-21
domain login-access.top 2023-12-21
domain login-live-com.pw 2023-12-21
domain login-live.review 2023-12-21
domain massa.pw 2023-12-21
domain muscle.ovh 2023-12-21
domain musclepharm.top 2023-12-21
domain node005-prevention-aol.link 2023-12-21
domain node03-prevention-icloud.link 2023-12-21
domain office-356pro.pw 2023-12-21
domain online-1drv.world 2023-12-21
domain online-redirect.site 2023-12-21
domain platforma.link 2023-12-21
domain prevention-aol.top 2023-12-21
domain qooqle-support-mail.pw 2023-12-21
domain safe-redirect.in.net 2023-12-21
domain screenname-aol.pw 2023-12-21
domain screenname.click 2023-12-21
domain secure-icloud.accountant 2023-12-21
domain secure-store-lcloud.top 2023-12-21
domain service-mail.asia 2023-12-21
domain shared-docs.download 2023-12-21
domain support-gmail.pw 2023-12-21
domain support-mail.top 2023-12-21
domain sykt.support 2023-12-21
domain ukrnet.pw 2023-12-21
domain ukroboronprom.pw 2023-12-21
domain ukrpharma.ovh 2023-12-21
domain yahoo-user.bid 2023-12-21
domain yahoo2-srv.bid 2023-12-21
domain yahoocentermail.info 2023-12-21
domain yahoomailfree.pw 2023-12-21
domain yamail.press 2023-12-21
email y8j4po1ih74l9akzmkq8@r.o-w-o.info 2023-12-21
hostname serv.safe-redirect.in.net 2023-12-21