PULSE NAME
Zero-Days in Firefox and Windows Exploited by RomCom
WHITE cryptocti 2024-11-30 Modified: 2024-12-30
15
IOCs
MEDIUM VOLUME
Russian cybercriminals named RomCom, exploiting zero-day vulnerabilities.
Indicators of Compromise (15)
All FileHash-SHA1 domain hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-SHA1 21918cfd17b378eb4152910f1246d2446f9b5b11 2024-11-30
FileHash-SHA1 703a25f053e356eb6ece4d16a048344c55dc89fd 2024-11-30
FileHash-SHA1 a4aad0e2ac1ee0c8dd25968fa4631805689757b6 2024-11-30
FileHash-SHA1 a9d445b77f6f4e90c29e385264d4b1b95947add5 2024-11-30
FileHash-SHA1 abb54c4751f97a9fc1c9598fed1ec9fb9e6b1db6 2024-11-30
FileHash-SHA1 ca6f8966a3b2640f49b19434ba8c21832e77a031 2024-11-30
domain correctiv.sbs 2024-11-30
domain cwise.store 2024-11-30
domain devolredir.com 2024-11-30
domain economistjournal.cloud 2024-11-30
domain journalctd.live 2024-11-30
domain redirconnectwise.cloud 2024-11-30
domain redircorrectiv.com 2024-11-30
domain redjournal.cloud 2024-11-30
hostname 1drv.us.com 2024-11-30