PULSE NAME
Threat Intel Report - W46-2024
WHITE aa00643640@techmahindra.com 2024-12-02 Modified: 2025-01-01
347
IOCs
HIGH VOLUME
This is a cyber-advisory document, presenting the compiled cyber threat intelligence sourced from various channels and tools. These are weekly base recommendations to all IT Administrators and CISOs to take corrective actions to upgrade their security infrastructure against newly identified threats and attacks in this week. Security is a continuous process, and it has to be reviewed and audited on a continuous manner through manual or automated tools. These details may be used as an additional layer to verify the current security posture of an organization against latest cyber trends.
Indicators of Compromise (175 / 347 total)
All domain URL FileHash-MD5 FileHash-SHA1 FileHash-SHA256 hostname
TYPEINDICATORDESCRIPTIONCREATED
URL http://185.215.113.209/Fru7Nk9/Plugins/clip64.dll 2024-12-02
URL http://aloowforest.xyz/c2sock 2024-12-02
URL http://ierinapu.xyz/ 855bb50e73e6b2d1c6d6d69ee436c9dfcc5b390a49d50119f8f2eea677bcaefd 2024-12-02
URL http://104.168.7.52/120/picturewithmebackwithne... 2024-12-02
URL http://104.219.234.170:16383/ 2024-12-02
URL http://109.107.177.164/ 2024-12-02
URL http://112.238.214.230:41717/i 2024-12-02
URL http://112.239.101.177:40647/Mozi.m 2024-12-02
URL http://112.253.135.234:48439/i 2024-12-02
URL http://113.168.88.182:51508/bin.sh 2024-12-02
URL http://113.230.50.130:55064/i 2024-12-02
URL http://113.236.153.226:60416/i 2024-12-02
URL http://114.228.170.91:59957/i 2024-12-02
URL http://115.50.157.22:38304/bin.sh 2024-12-02
URL http://115.59.17.255:42777/bin.sh 2024-12-02
URL http://115.62.149.39:36292/bin.sh 2024-12-02
URL http://115.62.181.97:34070/bin.sh 2024-12-02
URL http://116.138.108.165:47897/i 2024-12-02
URL http://117.193.140.39:60376/bin.sh 2024-12-02
URL http://117.202.70.194:40326/i 2024-12-02
URL http://117.206.23.11:46270/bin.sh 2024-12-02
URL http://117.209.117.70:57145/Mozi.m 2024-12-02
URL http://117.209.89.225:46498/Mozi.m 2024-12-02
URL http://117.209.95.94:34555/i 2024-12-02
URL http://117.210.179.88:60125/bin.sh 2024-12-02
URL http://117.211.212.103:35431/i 2024-12-02
URL http://117.213.92.125:42228/bin.sh 2024-12-02
URL http://117.253.167.217:52148/i 2024-12-02
URL http://117.253.4.237:58078/i 2024-12-02
URL http://117.253.51.8:47812/bin.sh 2024-12-02
URL http://117.254.175.124:58814/Mozi.m 2024-12-02
URL http://117.255.18.47:37145/Mozi.m 2024-12-02
URL http://119.115.55.102:46648/i 2024-12-02
URL http://119.116.145.77:39163/i 2024-12-02
URL http://120.61.199.195:37674/i 2024-12-02
URL http://120.61.73.212:52873/i 2024-12-02
URL http://123.10.33.140:50902/bin.sh 2024-12-02
URL http://123.129.151.176:56824/i 2024-12-02
URL http://123.154.17.184:44181/i 2024-12-02
URL http://123.189.133.239:59280/bin.sh 2024-12-02
URL http://125.44.188.114:48721/i 2024-12-02
URL http://136.175.8.52:29509/ 2024-12-02
URL http://14.153.144.21:33458/Mozi.m 2024-12-02
URL http://14.155.202.237:51627/bin.sh 2024-12-02
URL http://143.198.123.84:42078/ 2024-12-02
URL http://171.109.157.51:56398/Mozi.m 2024-12-02
URL http://175.149.90.152:35598/i 2024-12-02
URL http://175.165.132.66:34352/i 2024-12-02
URL http://176.36.148.87:36944/bin.sh 2024-12-02
URL http://182.112.51.167:46166/bin.sh 2024-12-02
URL http://182.121.84.91:46858/i 2024-12-02
URL http://182.123.210.77:59133/i 2024-12-02
URL http://182.127.51.32:41452/bin.sh 2024-12-02
URL http://185.118.165.94:15838/ 2024-12-02
URL http://185.172.128.79/3886d2276f6914c4.php 2024-12-02
URL http://185.196.11.151/idja/xKtzvdEoDAjLmvN.exe 2024-12-02
URL http://185.215.113.16/Jo89Ku7d/index.php 2024-12-02
URL http://185.215.113.16/inc/LummaC22222.exe 7fdd7da7975da141ab5a48b856d24fba2ff35f52ad071119f6a83548494ba816 2024-12-02
URL http://185.215.113.16/inc/build.exe 9f7be9bf913d8378f094b3f6416db9aa4c80c380000202f7cfaddadb6efc41b4 2024-12-02
URL http://185.215.113.16/inc/ha7dur10.exe 6c68d28c2fd55a424a21ba96b76d383f652bbed8cb68d7fbfaafcd139a689e44 2024-12-02
URL http://185.215.113.16/luma/random.exe 2024-12-02
URL http://185.215.113.16/steam/random.exe d9798bda5b0cd389f0b0f184ded085cded77a8652d96be4054789452b2a04ca5 2024-12-02
URL http://185.215.113.209/Fru7Nk9/index.php 2024-12-02
URL http://185.215.113.43/Zu7JuNko/index.php 2024-12-02
URL http://185.222.58.240:55615/ 2024-12-02
URL http://185.222.58.80:55615/ 2024-12-02
URL http://185.99.133.246/c2sock 2024-12-02
URL http://188.38.106.89:35070/bin.sh 2024-12-02
URL http://188.38.106.89:35070/i 2024-12-02
URL http://191.240.25.79:45812/i 2024-12-02
URL http://193.201.9.240/live/games/index.php 2024-12-02
URL http://193.201.9.43/ 2024-12-02
URL http://193.201.9.43/plays/chapter/Plugins/clip64.dll 13ce132c49ab6673a4da35eb9ff11d71f1451ad1351417e99cf41db8d2f474d9 2024-12-02
URL http://193.201.9.43/plays/chapter/Plugins/cred64.dll 2024-12-02
URL http://193.201.9.43/plays/chapter/index.php 2024-12-02
URL http://193.3.19.154/store/games/Plugins/clip64.dll 675771ae0ef1ba5c7fdde82f950461c2c4487e56b3fc41f5c544b73c8b33f10d 2024-12-02
URL http://193.3.19.154/store/games/Plugins/cred64.dll 3c8cc37a98346bd0123b35e5ccd87bd07d69914dae04f8b49f61c150d96e9d1f 2024-12-02
URL http://193.3.19.154/store/games/index.php 2024-12-02
URL http://195.123.226.91/c2sock 2024-12-02
URL http://198.12.107.126/ohshit.sh 2024-12-02
URL http://202.169.234.116:35070/i 2024-12-02
URL http://209.126.0.207:9876/hgueg.mips 2024-12-02
URL http://209.126.0.207:9876/shelld.m68k 2024-12-02
URL http://209.126.0.207:9876/shellv.m68k 2024-12-02
URL http://209.126.0.207:9876/yakuza.arm4 2024-12-02
URL http://209.126.0.207:9876/yakuza.arm6 2024-12-02
URL http://209.126.0.207:9876/yakuza.m68k 2024-12-02
URL http://209.126.0.207:9876/yakuza.mips 2024-12-02
URL http://209.126.0.207:9876/yakuza.mpsl 2024-12-02
URL http://209.126.0.207:9876/yakuza.x86 2024-12-02
URL http://209.126.0.207:9876/yakuza2.arm4 2024-12-02
URL http://209.126.0.207:9876/yakuza2.arm6 2024-12-02
URL http://209.126.0.207:9876/yakuza2.i586 2024-12-02
URL http://209.126.0.207:9876/yakuza2.m68k 2024-12-02
URL http://209.126.0.207:9876/yakuza3.arm4 2024-12-02
URL http://209.126.0.207:9876/yakuza3.arm6 2024-12-02
URL http://209.126.0.207:9876/yakuza3.i586 2024-12-02
URL http://209.126.0.207:9876/yakuza3.mpsl 2024-12-02
URL http://209.126.0.207:9876/yakuza4.arm4 2024-12-02
URL http://209.126.0.207:9876/yakuza4.i586 2024-12-02
URL http://209.126.0.207:9876/yakuza4.ppc 2024-12-02
URL http://209.126.0.207:9876/yakuza4.sh4 2024-12-02
URL http://219.155.203.240:52122/i 2024-12-02
URL http://221.15.255.7:58679/bin.sh 2024-12-02
URL http://27.202.181.249:33886/i 2024-12-02
URL http://27.202.181.67:33886/i 2024-12-02
URL http://2flowers-my.xyz/c2sock 2024-12-02
URL http://42.203.68.64:55388/i 2024-12-02
URL http://42.224.78.159:41635/bin.sh 2024-12-02
URL http://42.230.45.33:33434/bin.sh 2024-12-02
URL http://45.200.148.61:65012/ 2024-12-02
URL http://5.42.64.41/ 2024-12-02
URL http://5.42.64.41/40d570f44e84a454.php 2024-12-02
URL http://5.42.92.211/ 2024-12-02
URL http://50.114.242.21:6677/IRemotePanel 2024-12-02
URL http://50.116.53.64:3214/ 2024-12-02
URL http://51.195.94.194:42678/ 2024-12-02
URL http://51.254.69.209:48987/ 2024-12-02
URL http://58.47.24.68:37250/bin.sh 2024-12-02
URL http://58.59.152.228:45425/bin.sh 2024-12-02
URL http://59.182.127.114:47520/bin.sh 2024-12-02
URL http://59.182.127.114:47520/i 2024-12-02
URL http://59.184.244.239:58985/i 2024-12-02
URL http://59.19.139.210:9829/.i 2024-12-02
URL http://59.88.13.214:52714/Mozi.m 2024-12-02
URL http://59.88.251.54:52894/Mozi.m 2024-12-02
URL http://59.89.12.147:45468/Mozi.a 2024-12-02
URL http://59.89.6.51:48851/Mozi.m 2024-12-02
URL http://59.89.64.227:40290/Mozi.m 2024-12-02
URL http://59.91.172.37:37539/i 2024-12-02
URL http://59.92.86.228:53170/bin.sh 2024-12-02
URL http://59.94.153.161:53081/bin.sh 2024-12-02
URL http://59.95.97.169:39423/Mozi.m 2024-12-02
URL http://59.97.124.131:50394/Mozi.m 2024-12-02
URL http://60.209.154.150:37065/bin.sh 2024-12-02
URL http://60.209.154.150:37065/i 2024-12-02
URL http://60.22.174.207:44368/i 2024-12-02
URL http://60.22.78.53:51945/i 2024-12-02
URL http://61.1.231.168:54496/bin.sh 2024-12-02
URL http://61.3.129.239:52714/bin.sh 2024-12-02
URL http://62.204.41.87/joomla/Plugins/cred64.dll 2024-12-02
URL http://62.204.41.87/joomla/index.php 2024-12-02
URL http://72.180.130.39:40481/bin.sh 2024-12-02
URL http://77.232.41.42:37097/ 2024-12-02
URL http://82.117.255.80/c2sock f1945cd6c19e56b3c1c78943ef5ec18116907a4ca1efc40a57d48ab1db7adfc5 2024-12-02
URL http://84.38.132.100:29934/ 2024-12-02
URL http://87.120.127.223:42128/ 2024-12-02
URL http://89.110.95.189:45697/ 2024-12-02
URL http://95.215.204.229/3b4b68059f902c42/freebl3.dll 2024-12-02
URL http://95.215.204.229/3b4b68059f902c42/mozglue.dll 2024-12-02
URL http://95.215.204.229/3b4b68059f902c42/msvcp140... 2024-12-02
URL http://95.215.204.229/3b4b68059f902c42/nss3.dll 2024-12-02
URL http://95.215.204.229/3b4b68059f902c42/softokn3... 2024-12-02
URL http://95.215.204.229/3b4b68059f902c42/sqlite3.dll 2024-12-02
URL http://agustfreeday-my.xyz/c2sock 2024-12-02
URL http://bestmetrys.zapto.org:1019/ 2024-12-02
URL http://blinktelecom.com.br 2024-12-02
URL http://clonecloud-my.xyz/c2sock 2024-12-02
URL http://crazypictures.xyz/c2sock 2024-12-02
URL http://everest-telecom.com.br 2024-12-02
URL http://gg123213123sadas-38622.portmap.host/ 2024-12-02
URL http://gservice-node.io/c2sock 2024-12-02
URL http://gstatic-node.io/c2sock 2024-12-02
URL http://many-verses.xyz/c2sock 2024-12-02
URL http://memorialwords.xyz:6666/ 2024-12-02
URL http://rostelecom.com.br 2024-12-02
URL http://servicetelemetryserver.shop/api/index.php 36a9e7f1c95b82ffb99743e0c5c4ce95d83c9a430aac59f84ef3cbfab6145068 2024-12-02
URL http://skicloud-my.xyz/c2sock 2024-12-02
URL http://solopodvip-my.xyz/c2sock 2024-12-02
URL http://speedtestip.xyz/c2sock 2024-12-02
URL http://static-chennai.powertel.in 2024-12-02
URL http://stoppublick.xyz/c2sock 2024-12-02
URL http://turbonetwifi.com.br 2024-12-02
URL http://vipcloud-my.xyz/c2sock 2024-12-02
URL http://worldofpoetry.xyz/c2sock 2024-12-02