PULSE NAME
lizardsquad mirai /
WHITE lizardsqua 2025-06-04 Modified: 2025-07-04
86
IOCs
HIGH VOLUME
A look at some of the key details about the shutdown of Microsoft's Windows update server, as well as the details of how the service was set up and how it looked up on the internet.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (86)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 d18a76a6c215ad919863695e6064d320 2025-06-04
FileHash-SHA1 ccf54300d34b7c208a0a32e785e1506738560006 2025-06-04
FileHash-SHA256 896e3d7f635b3cd2db0d7c07d3543190bd5cb97ed239e32521d04a2d69550d13 2025-06-04
FileHash-SHA256 97b7b5910a32d35a37d6596f6deed523b6361bb193dbc3088aedd9ded58233cc 2025-06-04
FileHash-SHA256 ec2d0dd91948680d5319f86598c5f279c3c28cf02b65e164f95e230927281f61 2025-06-04
URL https://afra.id/file/7az7a6 2025-06-04
URL https://alo.ne/ 2025-06-04
domain afra.id 2025-06-04
URL http://postfixadmin.simswap.in/login.php 2025-06-04
URL https://alo.ne/7az7a6 2025-06-04
URL https://alone.sellsn.io/product/50882b16-da06-40e0-a602-f2fb53c7f09a 2025-06-04
URL https://main.alo.ne/ 2025-06-04
URL https://webmail.alo.ne 2025-06-04
domain ageba.it 2025-06-04
domain bayon.et 2025-06-04
domain bruis.es 2025-06-04
domain deni.al 2025-06-04
domain doxi.ng 2025-06-04
domain drugabu.se 2025-06-04
domain excus.es 2025-06-04
domain exitsc.am 2025-06-04
domain glowi.es 2025-06-04
domain homicid.es 2025-06-04
domain karamb.it 2025-06-04
domain larp.money 2025-06-04
domain larpi.ng 2025-06-04
domain pinge.rs 2025-06-04
domain sexu.al 2025-06-04
domain simswap.in 2025-06-04
domain skid.rip 2025-06-04
domain supersta.rs 2025-06-04
domain swatti.ng 2025-06-04
domain trapst.ar 2025-06-04
domain trolli.ng 2025-06-04
hostname alone.sellsn.io 2025-06-04
hostname main.alo.ne 2025-06-04
hostname postfixadmin.simswap.in 2025-06-04
hostname webmail.alo.ne 2025-06-04
URL http://larp.money 2025-06-04
URL http://ageba.it 2025-06-04
URL http://alo.ne 2025-06-04
URL http://bayon.et 2025-06-04
URL http://bruis.es 2025-06-04
URL http://deni.al 2025-06-04
URL http://doxi.ng 2025-06-04
URL http://drugabu.se 2025-06-04
URL http://excus.es 2025-06-04
URL http://exitsc.am 2025-06-04
URL http://glowi.es 2025-06-04
URL http://homicid.es 2025-06-04
URL http://karamb.it 2025-06-04
URL http://larpi.ng 2025-06-04
URL http://pinge.rs 2025-06-04
URL http://sexu.al 2025-06-04
URL http://skid.rip 2025-06-04
URL http://supersta.rs 2025-06-04
URL http://swatti.ng 2025-06-04
URL http://trapst.ar 2025-06-04
URL http://trolli.ng 2025-06-04
URL https://alone.sellsn.io/product/50882b16-da06-40e0-a602-f2fb53c7... 2025-06-04
URL https://main.alo.ne 2025-06-04
URL https://simswap.in 2025-06-04
URL https://simswap.in/ 2025-06-04
URL https://simswap.in/favicon.ico 2025-06-04
FileHash-SHA256 582872a3dbea7ec9d791b3d1464bce1afbd8e5c6f395614045afe6a5f74b1c05 2025-06-04
URL http://185.130.46.236:123 2025-06-04
URL http://185.130.46.236:143 2025-06-04
URL http://185.130.46.236:22 2025-06-04
URL http://185.130.46.236:25 2025-06-04
URL http://185.130.46.236:3478 2025-06-04
URL http://185.130.46.236:4190 2025-06-04
URL http://185.130.46.236:443 2025-06-04
URL http://185.130.46.236:465 2025-06-04
URL http://185.130.46.236:5000 2025-06-04
URL http://185.130.46.236:5080 2025-06-04
URL http://185.130.46.236:5222 2025-06-04
URL http://185.130.46.236:5223 2025-06-04
URL http://185.130.46.236:5269 2025-06-04
URL http://185.130.46.236:5443 2025-06-04
URL http://185.130.46.236:587 2025-06-04
URL http://185.130.46.236:80 2025-06-04
URL http://185.130.46.236:8080 2025-06-04
URL http://185.130.46.236:993 2025-06-04
URL https://185.130.46.236/ 2025-06-04
hostname 250-mail.simswap.in 2025-06-04
hostname mail.simswap.in 2025-06-04