PULSE NAME
Threat Intel Report - W28-2024
WHITE aa00643640@techmahindra.com 2024-08-13 Modified: 2024-09-12
456
IOCs
HIGH VOLUME
This is a cyber-advisory document, presenting the compiled cyber threat intelligence sourced from various channels and tools. These are weekly base recommendations to all IT Administrators and CISOs to take corrective actions to upgrade their security infrastructure against newly identified threats and attacks in this week. Security is a continuous process, and it has to be reviewed and audited on a continuous manner through manual or automated tools. These details may be used as an additional layer to verify the current security posture of an organization against latest cyber trends.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (95 / 456 total)
All URL FileHash-MD5 FileHash-SHA1 FileHash-SHA256 domain hostname
TYPEINDICATORDESCRIPTIONCREATED
URL https://precisionsec.com/threat-intelligence-feeds/ 2024-08-13
URL https://psbl.org/ 2024-08-13
URL ftp://ftp.acc-engineering.xyz/ 2024-08-13
URL ftp://ftp.corpsa.net/ 2024-08-13
URL ftp://ftp.lemendoza.com/ 2024-08-13
URL ftp://ftp.onelovehk.com.ng/ 2024-08-13
URL ftp://ftp.svetigeorgije.co.rs/ 2024-08-13
URL http://112.225.126.42:34839/Mozi.m 2024-08-13
URL http://112.242.238.121:38965/bin.sh 2024-08-13
URL http://114.42.48.28:42026/bin.sh 2024-08-13
URL http://115.50.174.83:38238/bin.sh 2024-08-13
URL http://115.56.123.186:52251/Mozi.m 2024-08-13
URL http://117.195.239.194:36112/bin.sh 2024-08-13
URL http://117.200.206.217:42096/bin.sh 2024-08-13
URL http://117.206.65.243:58968/i 2024-08-13
URL http://117.206.67.237:40880/i 2024-08-13
URL http://117.207.173.196:49152/bin.sh 2024-08-13
URL http://117.208.17.156:36832/i 2024-08-13
URL http://117.209.47.49:38723/bin.sh 2024-08-13
URL http://117.210.179.255:50561/bin.sh 2024-08-13
URL http://117.210.191.87:58542/bin.sh 2024-08-13
URL http://117.213.243.29:56211/Mozi.m 2024-08-13
URL http://117.214.12.4:41666/i 2024-08-13
URL http://117.220.146.94:38699/bin.sh 2024-08-13
URL http://117.220.79.173:54769/bin.sh 2024-08-13
URL http://117.223.8.141:51784/Mozi.a 2024-08-13
URL http://117.245.36.75:41711/bin.sh 2024-08-13
URL http://117.248.164.113:54361/bin.sh 2024-08-13
URL http://117.248.166.171:34539/bin.sh 2024-08-13
URL http://117.251.163.55:40588/i 2024-08-13
URL http://117.253.146.66:45600/bin.sh 2024-08-13
URL http://117.253.147.121:42021/i 2024-08-13
URL http://117.254.103.210:49346/i 2024-08-13
URL http://117.255.11.4:54225/bin.sh 2024-08-13
URL http://119.185.141.206:56813/bin.sh 2024-08-13
URL http://120.60.238.131:58103/i 2024-08-13
URL http://120.61.131.156:54932/bin.sh 2024-08-13
URL http://120.61.55.156:60265/bin.sh 2024-08-13
URL http://120.61.75.142:42190/i 2024-08-13
URL http://120.61.86.197:45016/bin.sh 2024-08-13
URL http://182.121.217.215:52169/bin.sh 2024-08-13
URL http://182.122.234.250:48618/bin.sh 2024-08-13
URL http://182.57.206.140:53081/i 2024-08-13
URL http://195.123.226.91/c2sock 2024-08-13
URL http://221.15.18.50:52355/bin.sh 2024-08-13
URL http://222.137.38.131:33377/i 2024-08-13
URL http://27.37.75.130:53913/bin.sh 2024-08-13
URL http://39.74.249.115:59971/bin.sh 2024-08-13
URL http://42.226.69.199:54818/bin.sh 2024-08-13
URL http://42.227.236.233:45690/i 2024-08-13
URL http://42.239.228.69:45140/i 2024-08-13
URL http://59.182.117.54:46673/i 2024-08-13
URL http://59.182.133.83:36832/bin.sh 2024-08-13
URL http://59.182.93.170:56055/i 2024-08-13
URL http://59.88.124.226:43106/i 2024-08-13
URL http://59.88.224.185:40044/i 2024-08-13
URL http://59.91.86.30:45683/bin.sh 2024-08-13
URL http://59.91.87.164:44233/Mozi.m 2024-08-13
URL http://59.95.133.65:55432/bin.sh 2024-08-13
URL http://59.95.87.111:33463/i 2024-08-13
URL http://59.97.118.11:48269/i 2024-08-13
URL http://59.99.192.110:49699/bin.sh 2024-08-13
URL http://61.1.236.79:40223/i 2024-08-13
URL http://61.52.198.210:41940/Mozi.m 2024-08-13
URL http://61.53.85.249:44828/bin.sh 2024-08-13
URL http://61.53.88.47:60263/i 2024-08-13
URL http://akana.mobiseclab.org 2024-08-13
URL http://bhaighhdebikfge.top/ac41wr0hbfhtr.php 2024-08-13
URL http://bhaighhdebikfge.top/b%20hzioh%20h.php 2024-08-13
URL http://gstatic-node.io/c2sock 2024-08-13
URL http://jembhhnabanmeij.top/j%20ezioh%20n.php 2024-08-13
URL http://jembhhnabanmeij.top/q782ef6obnhtr.php 2024-08-13
URL http://jevereg.amnpardaz.com/ 2024-08-13
URL http://originwealth.ydns.eu/sew/inc/10a5031d37bc79.php 2024-08-13
URL http://p4-preview.runhosting.com/breakingsec02.co.nf/Remcos/OnlineCheck-v4.php 2024-08-13
URL http://p4-preview.runhosting.com/breakingsec02.co.nf/Remcos/logaccess.php 2024-08-13
URL http://p4-preview.runhosting.com/breakingsec02.co.nf/Remcos/login.php 2024-08-13
URL http://p4-preview.runhosting.com/breakingsec02.co.nf/Remcos/upd_free.txt 2024-08-13
URL http://pfcloud.io/arm5 2024-08-13
URL http://pfcloud.io/dbg 2024-08-13
URL http://pfcloud.io/mips 2024-08-13
URL http://pfcloud.io/ppc 2024-08-13
URL http://pfcloud.io/sh4 2024-08-13
URL http://pfcloud.io/spc 2024-08-13
URL http://pfcloud.io/x86 2024-08-13
URL http://pfcloud.io/x86_64 2024-08-13
URL http://pushkinorigin.ydns.eu/wiz/inc/1d7c50187af637.php 2024-08-13
URL http://static.liggatelecom.com.br 2024-08-13
URL http://www.invaluement.com/ 2024-08-13
URL http://www.texlandbd.com/vvs/inc/c874c1a5333207.php 2024-08-13
URL https://apkscan.nviso.be/ 2024-08-13
URL https://www.dnsbl.info/ 2024-08-13
URL https://www.secondwrite.com 2024-08-13
URL https://www.senderscore.org/ 2024-08-13
URL https://www.silobreaker.com/category/threat-reports/ 2024-08-13