PULSE NAME
Highjacked iOS-cobalt-strike_elex_hijackloader | Host - Twitter l
WHITE Q.Vashti 2025-05-22 Modified: 2025-06-21
968
IOCs
HIGH VOLUME
Found on a a US owned iOS device infected with Pegasus and multiple other worms, viruses, malware, remotel manipulation + |2025-05-19_5eb441996d0f79f27d1ce3f54d94d315_cobalt-strike_elex_hijackloader | trojan.patchedwinswrort/cobaltstrike || Hostname s.twitter.com No Expiration 0 Hostname search.twitter.com || MITRE ATT&CK Tactics and Techniques Execution TA0002 Persistence TA0003 Privilege Escalation TA0004 Defense Evasion TA0005 Discovery TA0007 Command and Control TA0011 Malware Behavior Catalog Tree Anti-Behavioral Analysis || OB0001 Anti-Static Analysis OB0002 Defense Evasion OB0006 Discovery OB0007 Privilege Escalation OB0013 File System OC0001 Memory OC0002 Process OC0003 Data OC0004 Communication OC0006 || Capabilities Load-Code Host-Interaction Data-Manipulation Executable Anti-Analysis Linking
Indicators of Compromise (75 / 968 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 5eb441996d0f79f27d1ce3f54d94d315 MD5 of 92708b700538a43cdb639c5a9061bf4905ca74f8aa6c07dfe2a332bfd592ae7b 2025-05-22
FileHash-MD5 3ce9d145f7e596bfdadd1d809cb78347 MD5 of 000002f7c809714f3dd89443c0b12d7f397c7dfe6108a448571e378b84c9f229 2025-05-22
FileHash-MD5 a5a327539b6d98d869a01921f3fe0de8 MD5 of 000000fa31dd212345f86e2129eef17b12d197742f60f90a90554a5f9ad2eee1 2025-05-22
FileHash-MD5 002aaa04192fd2daba0c1df7f5b2922c MD5 of 703be112d7b1b926f986f2ee85196fd28a6a63801911f4f6c895515ae2ed68cb 2025-05-22
FileHash-MD5 0d7ad4f45dc6f5aa87f606d0331c6901 MD5 of 3eb38ae99653a7dbc724132ee240f6e5c4af4bfe7c01d31d23faf373f9f2eaca 2025-05-22
FileHash-MD5 0f96d9eb959ad4e8fd205e6d58cf01b8 MD5 of 57ede354532937e38c4ae9da3710ee295705ea9770c402dfb3a5c56a32fd4314 2025-05-22
FileHash-MD5 113fd9eb5722cc7ff9ab664bf8a59cf9 MD5 of 000d14c22f831547466d903f0afcffddc7f8ab31d6d3e209b1db23b5282616a6 2025-05-22
FileHash-MD5 1c1caee625b986a2f070b0de42982b78 MD5 of 0000090a7c89f08ab60397f5e777f054eaa195bf496c2452c39b688fe53a9e97 2025-05-22
FileHash-MD5 252417aa83a6bc320edfc359fa6cd5c5 MD5 of 000e3700b47ea22ceb2a4bb9bf47ab5e877d7a7ddb4928feeb4b318b674832dc 2025-05-22
FileHash-MD5 2a91302bfe645cc3b7ed302fbb9c6940 MD5 of 664f9ea097d1992b28aff370ab00e19f049d1e62cc2776e61b07bbe0c4364935 2025-05-22
FileHash-MD5 2e6e490904c6ce7d4a4d041028845a71 MD5 of 00007b1dfca1c501fb5f115287a3e75a0c17ac1404fc345faa92f606ae7a3da4 2025-05-22
FileHash-MD5 3609e64b2d4b99f1579c8dbd2526a501 MD5 of 3ca15d40b98f8fb37c58a36c7158016cf2d01fd63bade555e0390213cbdca378 2025-05-22
FileHash-MD5 370e16c3b7dba286cff055f93b9a94d8 MD5 of d465172175d35d493fb1633e237700022bd849fa123164790b168b8318acb090 2025-05-22
FileHash-MD5 3ae37b3fc762fc91d126c703b0153b9d MD5 of d705ae2f486a09eb64ca61a2c699a00cfccc2e368bf18ccb906a4b2bce21ec8b 2025-05-22
FileHash-MD5 3b98b60a717316cf319ef4df906b4a69 MD5 of 00000045ef6ec5eb590ef16ef79d467734ea7d9144d7990511514f08ed3cb673 2025-05-22
FileHash-MD5 3ba651bc817e38f3aa04da9257ea9c0d MD5 of 00000085882dc946e2ec5dd74baaa0ffc880e9a0f3c0ccb3e037fe71a28eea96 2025-05-22
FileHash-MD5 42aa7d03c8376575abd6343aed099b06 MD5 of 00001402e1e4f203e423a480e1b001797065eefc2f8069a3abad559c63068bf2 2025-05-22
FileHash-MD5 466179e1c8ee8a1ff5e4427dbb6c4a01 MD5 of 1e40211af65923c2f4fd02ce021458a7745d28e2f383835e3015e96575632172 2025-05-22
FileHash-MD5 49aebf8cbd62d92ac215b2923fb1b9f5 MD5 of b33efcb95235b98b48508e019afa4b7655e80cf071defabd8b2123fc8b29307f 2025-05-22
FileHash-MD5 4db0c5b6b17665ad8245bdb93094d03d MD5 of 00000077553a5b27a610ac98f29563bbd6e0decc020c2d49e4fa0d89197e7fd8 2025-05-22
FileHash-MD5 4e9b6d8a551822a61dd1ee3e64f021ff MD5 of 000b7c127a598b4323e2341df74f65846316c98188f60a232c3f80aea7c3b9af 2025-05-22
FileHash-MD5 4f8e702cc244ec5d4de32740c0ecbd97 MD5 of 9e17cb15dd75bbbd5dbb984eda674863c3b10ab72613cf8a39a00c3e11a8492a 2025-05-22
FileHash-MD5 5343c1a8b203c162a3bf3870d9f50fd4 MD5 of dc1d54dab6ec8c00f70137927504e4f222c8395f10760b6beecfcfa94e08249f 2025-05-22
FileHash-MD5 5c61d297ff7d48ad2b01e17527142633 MD5 of fc909bdd4af5ef9831714d8d527e86475300d72d4a1853f955f254b3948fb40e 2025-05-22
FileHash-MD5 5e2ec70caa4275fdf9c1e3b654cc3f32 MD5 of 6237e23f5a305e075b5965393ba955d0f7bb4e0f46824f2f55ab3d3b03cfe723 2025-05-22
FileHash-MD5 5f74db9f3fef176d9af3283eee156836 MD5 of 00000ba763b15359178b30adb727fe99ac225075c150fcedf839ec02b4ce2721 2025-05-22
FileHash-MD5 624b142ac71c7f130fb1ea7aeb1d72e3 MD5 of 0009f8f69c6dca4ee7af566cb3d7b77e915b5395eabf433a7fe3c9d39a483657 2025-05-22
FileHash-MD5 63b648470ff819132a3da9b7771eb857 MD5 of 000aaf7b6012b35686d5aa43f415653ff5e94175d3732501dfe1a127833aaadd 2025-05-22
FileHash-MD5 645693c029b4749e13421e2e995c750a MD5 of 000070b995aa2ba0086a54f92d0c6e5cd05ee1bf02016dec8c53105eec8fe654 2025-05-22
FileHash-MD5 67763b1854c30d203fa348d014fbb663 MD5 of 00000416542b6ee3625cc1dd73e347181ac78f6ae7e2dcffaf4228356292ab7c 2025-05-22
FileHash-MD5 68b2bac30409e8324252e928996f3ee9 MD5 of 6d2a6e8db4dbfa9dbb6c96933302c13882c7dc66ceb5a3823766feeb9b2ce85a 2025-05-22
FileHash-MD5 6b1591d025061d7051aff8733cf9638f MD5 of 00098f85a8d9824ae0bfa1c11ff8f9de6696e76e112df295470a0cfe986bdbeb 2025-05-22
FileHash-MD5 6fe966aadfb1df8d970292efacccbfaf MD5 of 000a7a51a9484f3257550dee81112ab19a89e3f491947e26962c411724cc91e5 2025-05-22
FileHash-MD5 79d86c45a91e4859ca1d90de19800c06 MD5 of 0000731d1837c809f708dd16d18782431e19dd2879305300f3176ecebcec41fc 2025-05-22
FileHash-MD5 7df933c48f70841613a9f0092b5e4a31 MD5 of 8e553e9aa721db167bdeaf7748bb09d4f497e3a469fd09b6a995ea25d378f1fb 2025-05-22
FileHash-MD5 7eb117d4f238090940dbe43efbcdf1f4 MD5 of a45a77d256628943190f8aa0f4673496d11dba6bc3569796b6f733465fd005e4 2025-05-22
FileHash-MD5 85c1ab2daddc6681471d067d11c6aff0 MD5 of 000106c05e2588a5ec2de405ade5da55230bd4daf228f86afebe1e1ce38d6f52 2025-05-22
FileHash-MD5 87fbb9677e3ff9b46d83e136279761ed MD5 of d4f26d8b8f9238a953577eaf92665937bdd081b5ef770826823ed30ac9475fa6 2025-05-22
FileHash-MD5 8b386b89e614d3084c1da3c28e324fb2 MD5 of 0000cff6a3c7f7eebc0edc3d1e42e454ebb675e57d6fc1fd968952694b1b44b3 2025-05-22
FileHash-MD5 918dd71651933f1b0ef90a6b4b332939 MD5 of 103dc199509c5ba8b96ceb2a26fd063e6953aaa192c37d8a429aaf2e305fbb5c 2025-05-22
FileHash-MD5 932e954314fbe3d35532417436fc00c0 MD5 of 00000944c9e053f1c545ef1b4b21bfbf6f07265b6449bffdeb4b761c78416e6e 2025-05-22
FileHash-MD5 9e03107b43154594a5231d9780a5248e MD5 of 00003872ff048f7e404594681afc816628654ff80fabee9068d96c032b378cd6 2025-05-22
FileHash-MD5 a0ffc962f4d0a5c4b1ad2107d8dc4d56 MD5 of 00001a0a27f6159a40a8a38410cb375fc717a26902cb80b13cb30b4b7c0e86e2 2025-05-22
FileHash-MD5 a266bb7dcc38a562631361bbf61dd11b MD5 of df545bf919a2439c36983b54cdfc903dfa4f37d3996d8d84b4c31eec6f3c163e 2025-05-22
FileHash-MD5 a790fccea106fd28a43aef859b3dbec4 MD5 of 0002f544e3803fd11c00b6469bb7d5295687bc0873ca480ff7afc5c933250c03 2025-05-22
FileHash-MD5 aaddb47104d94939d9d2caa975db2cab MD5 of 00000006e9d3a7e85d1f1e7711787b9a117655e249a565122ee12e9962199007 2025-05-22
FileHash-MD5 ab34781a7c484ffe4c3f34e57b171380 MD5 of 0003b776d22c71de1da6cb2d08f8e63d9266243a28aa861c9839747810942f05 2025-05-22
FileHash-MD5 ab8739817e573ad4563c2a61e8cc1e11 MD5 of 00045135d465db645c7e36a29e2eb5fdb758dec7f9dd10f1c9f9f40175a0c9c4 2025-05-22
FileHash-MD5 acaeda60c79c6bcac925eeb3653f45e0 MD5 of 6b0ceccf0103afd89844761417c1d23acc41f8aebf3b7230765209b61eee5658 2025-05-22
FileHash-MD5 ae4960698f98a1eba1de3fa4cf2b5396 MD5 of 000261c31645aab19a023d847a550788b80961a4fea1389249497f8ce36f65ed 2025-05-22
FileHash-MD5 b457518a80a0ce3c3c9558ec2e73602c MD5 of 000000c1a823b0dbd22efbcb933b00e6d01fa62cfcb9a52d87e13948128f40a6 2025-05-22
FileHash-MD5 b9589cc3017b6f227ebff96fff24b4f9 MD5 of 0009059934e62bbf0d3411250a26c24bef54136fdac38d058b6563df2ce94360 2025-05-22
FileHash-MD5 bbe84a0a4678b05737418fed7a0bd0a2 MD5 of 000964da837e15a41cac65c246bf2299196c179b93419aed85162096e4e22480 2025-05-22
FileHash-MD5 be72cca68b7f08c0be9d1b0dcf85135b MD5 of 000011499d68e56e2c5853567c88c58ee20d38e5df538c9899959a040d49e97e 2025-05-22
FileHash-MD5 befebac1811eecf50a39c3ba31968f4a MD5 of 000000c82b887e512b6f391b1314fea3fdef4ffb027d84e483c5d99a66d696fd 2025-05-22
FileHash-MD5 c1ddea3ef6bbef3e7060a1a9ad89e4c5 MD5 of b71e4d17274636b97179ba2d97c742735b6510eb54f22893d3a2daff2ceb28db 2025-05-22
FileHash-MD5 c509c2553b1683362717fcfcda5a4f27 MD5 of a7a42c1609c35a1c6b2d0459f9cb4ce92907c722251012cc2409fa909f79eb88 2025-05-22
FileHash-MD5 cc17c4e2805306984a614f5dcb3915e7 MD5 of 00000075d77e227cdb2d386181e42f42b579eb16403143dc54cd4a3d17fc8622 2025-05-22
FileHash-MD5 d041c6e0156b87978a54ab6a49f66593 MD5 of 00000078afd5c2441b0a4ca628c1b7bcc961a68f2b779d281af6d2af405b5f1a 2025-05-22
FileHash-MD5 d57e9ff54afcdb316238dcb662b59986 MD5 of 7788c7e6537b583d2b586b76c9e635a8125c8a2712f9d3edc8ec6cc89acdc249 2025-05-22
FileHash-MD5 d99661d0893a52a0700b8ae68457351a MD5 of bdd5111162a6fa25682e18fa74e37e676d49cafcb5b7207e98e5256d1ef0d003 2025-05-22
FileHash-MD5 dca83f08d448911a14c22ebcacc5ad57 MD5 of 2b4b2d4a06044ad0bd2ae3287cfcbecd90b959feb2f503ac258d7c0a235d6fe9 2025-05-22
FileHash-MD5 ec0504e6b8a11d5aad43b296beeb84b2 MD5 of 5d9ceb1ce5f35aea5f9e5a0c0edeeec04dfefe0c77890c80c70e98209b58b962 2025-05-22
FileHash-MD5 eeb13468b73d93fa8bcbe3ebae6df720 MD5 of 802600d124464157037a2519acb3cff90b97670fd04809ea902fbb95497a12ca 2025-05-22
FileHash-MD5 f5868aaf42de31b0d4897ec11ef90015 MD5 of 000bf0ef82df5964b549d38fa708c3cf80db9701be4ca2dc57cf5d5825a9203c 2025-05-22
FileHash-MD5 fffec6c77aedb2d0dac44e5bdcdf2a00 MD5 of 66f96098d4cf709beaba54362b85ffd2d6f294ab2e75b24d2d981a5f52534ec3 2025-05-22
FileHash-MD5 659abbd5f72653bb6671bb0f7c76363a 2025-05-22
FileHash-MD5 fa9c773f468ccb3f8cc017b027bc4c4c 2025-05-22
FileHash-MD5 12a65720578d62a92cfa65b744515040 2025-05-22
FileHash-MD5 152b52c957e19fdc485c53687d1a0b4e 2025-05-22
FileHash-MD5 27154e52ca510bb1fc5700c6ef56386b 2025-05-22
FileHash-MD5 2d7ca85b88b6f845c4531cff3c2b38ec 2025-05-22
FileHash-MD5 46b1948b72c03eee66bdc515052e2290 2025-05-22
FileHash-MD5 6f10499f033254a757529f630e5d3566 2025-05-22
FileHash-MD5 fae545a8667002524da305cb21bb1fda 2025-05-22