PULSE NAME
New TAOTH Campaign Exploits End-of-Support Software to Distribute Malware
WHITE cryptocti 2025-08-30 Modified: 2025-09-29
39
IOCs
MEDIUM VOLUME
Recently identified campaign dubbed as TAOTH leverages end-of-support software to deliver malware through a legitimate input method editor (IME) application called “Sogou Zhuyin”.
Indicators of Compromise (6 / 39 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 06a4a0b86ac591c93457ec654db08055 MD5 of 3bdac367a7aeab050b8b57c4303110d4db043b939a8f721f3052416c1c3b9fdc 2025-08-30
FileHash-MD5 082de5f9d39438c2ecc565839ee4b1c2 MD5 of 4c172211a462cc6e95d9537ecd917ca7c456512006474b4105c1342f0b138dfe 2025-08-30
FileHash-MD5 340dccecefb540667ba0f356c64a19a5 MD5 of 0685dbb345160fcbcad33548cb3c747a46f3a11c6a243ab445fd20a71f4b3de7 2025-08-30
FileHash-MD5 c4f95a5cff4996667689e75cc3758e07 MD5 of 90a9be7cf4b7a1786697d5adfff781d9b6ed8db06da33ebef9438dee5a181106 2025-08-30
FileHash-MD5 e83ac585dfc94f6f515a64d1c51f1af9 MD5 of a53c96108d171392a29f221614086d8311e25af521c6b4da3e4af019370164cf 2025-08-30
FileHash-MD5 ead5b836ff378d6453605ccea9b32e20 MD5 of f8845b4957fdad691e2826aeb770103345e80375a67cc13772c48ca02e1812fc 2025-08-30