PULSE NAME
JS#SMUGGLER Deploying NetSupport RAT via Compromised Websites
WHITE cryptocti 2025-12-08 Modified: 2025-12-08
21
IOCs
MEDIUM VOLUME
JS#SMUGGLER is a web-based malware campaign that uses compromised websites to deliver the NetSupport RAT
Indicators of Compromise (21)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 domain
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 742486662fcc418ddedcb16a22363841 MD5 of 15a3cd9fc6f3e89fc4901be19b15069ccef0dcdd8071b4900448bf2ab374c002 2025-12-08
FileHash-SHA1 3aab2eeee1581e691d929d75cff803fb0eec817c SHA1 of 15a3cd9fc6f3e89fc4901be19b15069ccef0dcdd8071b4900448bf2ab374c002 2025-12-08
FileHash-SHA256 15a3cd9fc6f3e89fc4901be19b15069ccef0dcdd8071b4900448bf2ab374c002 2025-12-08
FileHash-SHA256 246d7d74deaa27eaad25c97fa302d128a1c8d58058ce4cc95fd6055acbc9b959 2025-12-08
FileHash-SHA256 24a8660ebdf54094d8e787486f19b2823f3bc4382f5ace764429a6b7e48025ea 2025-12-08
FileHash-SHA256 4f0494cf85322d540e9cb87295af1247377bcb65b09254900b7ca29f6f46508f 2025-12-08
FileHash-SHA256 55ad68ee73fa288698cd3b885196d0d02cdfd417563d247f617bca288243bf44 2025-12-08
FileHash-SHA256 99744720b128c6ac678a1d6e0fad0e69f159c1606428e91e7d2b7695cc353a80 2025-12-08
FileHash-SHA256 9ce88cc6fd2e3d298b97592d431c301d994f9c4ed7a7886c225e167bce29c046 2025-12-08
FileHash-SHA256 a89b471528737b91046fc42527bf84008b067908ccc1bf4318135476c290de61 2025-12-08
FileHash-SHA256 fced9291b4339c4fe3a1abfe5878d210a500afa7e1fa4a3be8613a6791c02b8e 2025-12-08
FileHash-SHA256 fe8400a81be3de95807396ffa1539e6818c8c586bd8a17d833a573aa5d7b433b 2025-12-08
domain boriver.com 2025-12-08
domain byspotikfy.com 2025-12-08
domain centaurustermas.com 2025-12-08
domain cpajoliette.com 2025-12-08
domain emoteragoddess.com 2025-12-08
domain frostshiledr.com 2025-12-08
domain kindstki.com 2025-12-08
domain srimedhasoft.com 2025-12-08
domain stoneandjon.com 2025-12-08