PULSE NAME
Phishing [020226]
WHITE FS13JKMK 2026-02-02 Modified: 2026-03-04
228
IOCs
HIGH VOLUME
Phishing domains and IP addresses that have been used to send malicious emails.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Win32/Znyonm!rfn
Indicators of Compromise (228)
All domain hostname email FileHash-SHA256 URL
TYPEINDICATORDESCRIPTIONCREATED
domain aerowisatafood.com 2026-02-02
domain livingairsoft.com 2026-02-02
domain oksha.co.jp 2026-02-02
domain qapco.com.qa 2026-02-02
domain sparklife.space 2026-02-02
domain thriveat.quest 2026-02-02
hostname ad.inetdev.de 2026-02-02
hostname challenge.clean-mailbox.com 2026-02-02
hostname newsletter.givegift.com.hk 2026-02-02
domain ok.com 2026-02-02
email alvisalward71@gmail.com 2026-02-02
email executivemailingbx@gmail.com 2026-02-02
email robertorukina@gmail.com 2026-02-02
email sersanferi@gmail.com 2026-02-02
email abu0503510024@gmail.com 2026-02-02
domain ala-link.co.jp 2026-02-02
email coqipukami836@gmail.com 2026-02-02
domain qdssjyzxf.com 2026-02-02
hostname mtf.biglobe.ne.jp 2026-02-02
email florentinialexsis236@gmail.com 2026-02-02
domain chitrawanunique.net.np 2026-02-02
domain rkt-raisin.com 2026-02-02
domain hyundai-kefico.com Malware - / Win32/Znyonm!rfn. 2026-02-02
domain benzfinance.net 2026-02-02
domain lieoints.mom 2026-02-02
FileHash-SHA256 fbaab53d8eebf29763829c0cd15a63910bc1b4d06fae12d2ee478539ec42d392 2026-02-02
domain aerologistic.co.id 2026-02-02
domain aeromice.co.id 2026-02-02
domain aeroprima.co.id 2026-02-02
domain aerowisata.co.id 2026-02-02
domain aerowisata.com 2026-02-02
domain aerowisata.info 2026-02-02
domain aerowisatafood.co.id 2026-02-02
domain aerowisatafood.net 2026-02-02
domain aerowisataholidays.com 2026-02-02
domain aerowisatalogistics.id 2026-02-02
domain aerowisatatransport.com 2026-02-02
domain aerowisatatravel.co.id 2026-02-02
domain aerowisatatravel.com 2026-02-02
domain aerowisatatravel.net 2026-02-02
domain asanabiak.com 2026-02-02
domain asanagrandpangrango-bogor.com 2026-02-02
domain asanamandalika.com 2026-02-02
domain balionanybudget.com.au 2026-02-02
hostname mail.aerowisata.co.id 2026-02-02
hostname mail.aerowisata.com 2026-02-02
hostname mail.aerowisatafood.com 2026-02-02
hostname pop.aerowisata.com 2026-02-02
domain pramasanur.com 2026-02-02
hostname smtp.aerowisata.com 2026-02-02
URL http://aerowisatatransport.com/ 2026-02-02
URL http://aerowisatatravel.com/ 2026-02-02
URL http://aerowisatatravel.net/ 2026-02-02
URL http://asanamandalika.com/ 2026-02-02
URL http://balionanybudget.com.au/ 2026-02-02
URL http://webmail.aerowisata.co.id/ 2026-02-02
URL https://mail.aerowisata.co.id/ 2026-02-02
URL https://smtp.aerowisata.com/ 2026-02-02
URL http://150.60.216.228:143 2026-02-02
hostname 216-131-77-250.ord.as62651.net 2026-02-02
URL http://216.131.77.250/dhl 2026-02-02
URL http://216.131.77.250/doc2803826741 2026-02-02
URL http://216.131.77.250/edc-65 2026-02-02
URL http://216.131.77.250/mfesek3180110ra 2026-02-02
URL http://216.131.77.250/po_vpo250361.tar 2026-02-02
URL http://216.131.77.250/rfq-dxb-materials-ddn-order.zip 2026-02-02
URL http://216.131.77.250/rfq-po 2026-02-02
URL http://216.131.77.250/rfq-re-skm_c364e21083015530-materials-spec.zip 2026-02-02
URL http://216.131.77.250/rfq_new_order_po83gd739_materials_uuo2.zip 2026-02-02
URL https://216.131.77.250/dhl/ 2026-02-02
URL https://216.131.77.250/doc2803826741/ 2026-02-02
URL https://216.131.77.250/edc-65/ 2026-02-02
URL https://216.131.77.250/mfesek3180110ra/ 2026-02-02
URL https://216.131.77.250/po_vpo250361.tar/ 2026-02-02
URL https://216.131.77.250/rfq-dxb-materials-ddn-order.zip/ 2026-02-02
URL https://216.131.77.250/rfq-po/ 2026-02-02
URL https://216.131.77.250/rfq-re-skm_c364e21083015530-materials-spec.zip/ 2026-02-02
URL https://216.131.77.250/rfq/ 2026-02-02
URL https://216.131.77.250/rfq_new_order_po83gd739_materials_uuo2.zip/ 2026-02-02
FileHash-SHA256 2c3e6a661bbe90e6879ab29081f4c9af90a1d71fcd0c44602b6765f3dcbdbcd4 2026-02-02
URL http://81.24.129.30:143 2026-02-02
URL http://81.24.129.30:25 2026-02-02
domain akhtarpt.com 2026-02-02
domain akhtarpt.ir 2026-02-02
domain alfaholding.ir 2026-02-02
domain axonpolymer.com 2026-02-02
domain biogeneix.com 2026-02-02
domain doktorglobal.com 2026-02-02
domain elhamphysio.com 2026-02-02
domain htzdns.site 2026-02-02
domain komasiweb.ir 2026-02-02
domain lfbgroup.co 2026-02-02
domain naturalnailhouse.com 2026-02-02
domain novinkerman.ir 2026-02-02
domain otaghshafaf.ir 2026-02-02
domain simamojtahedi.ir 2026-02-02
domain soulinkus.com 2026-02-02
domain tehrancab.com 2026-02-02
domain tehrancab.ir 2026-02-02
domain tehranpt.com 2026-02-02
domain xosa.org 2026-02-02
domain yadmantravel.ir 2026-02-02
URL https://alfaholding.ir/ 2026-02-02
URL https://axonpolymer.com/مستربچ-چیست؟ 2026-02-02
hostname erp-admin.chitrawanunique.net.np 2026-02-02
hostname eproc.aerowisatafood.com 2026-02-02
URL http://aerowisatafood.com/en/home/ 2026-02-02
URL http://aerowisatafood.com/in/beranda 2026-02-02
URL http://eproc.aerowisatafood.com 2026-02-02
URL http://imap.aerowisatafood.com/ 2026-02-02
URL http://mail.aerowisatafood.com 2026-02-02
URL https://aeris.aerowisatafood.com/ 2026-02-02
URL https://aerowisatafood.com/en/ 2026-02-02
URL https://aerowisatafood.com/en/about 2026-02-02
URL https://aerowisatafood.com/en/career/ 2026-02-02
URL https://aerowisatafood.com/en/comments/feed/ 2026-02-02
URL https://aerowisatafood.com/en/contact 2026-02-02
URL https://aerowisatafood.com/en/feed/ 2026-02-02
URL https://aerowisatafood.com/en/governance/ 2026-02-02
URL https://aerowisatafood.com/en/news/author/m 2026-02-02
URL https://aerowisatafood.com/en/vision 2026-02-02
URL https://aerowisatafood.com/in/tentang-kami/ 2026-02-02
URL https://demo.aerowisatafood.com/en/profile/ 2026-02-02
URL https://eproc.aerowisatafood.com 2026-02-02
URL https://eproc.aerowisatafood.com/ 2026-02-02
URL https://mail.aerowisatafood.com 2026-02-02
hostname campus.hyundai-kefico.com 2026-02-02
hostname kshe.hyundai-kefico.com 2026-02-02
hostname lyncdiscover.hyundai-kefico.com 2026-02-02
hostname mcampus.hyundai-kefico.com 2026-02-02
hostname sip.hyundai-kefico.com 2026-02-02
hostname veri.hyundai-kefico.com 2026-02-02
URL http://www.hyundai-kefico.com/ 2026-02-02
URL http://www.hyundai-kefico.com/common/download.jsp?filename=brochure_korea.pdf 2026-02-02
URL http://www.hyundai-kefico.com/en/business/pcu_modules.d 2026-02-02
URL http://www.hyundai-kefico.com/en/business/pdf/1_2Powertrain_Sensor_eng.pdf 2026-02-02
URL http://www.hyundai-kefico.com/ko/business/pdf/3_Others_kor.pdf 2026-02-02
URL http://www.hyundai-kefico.com/ko/business/pdf/pcu_actuator_3.pd 2026-02-02
URL http://www.hyundai-kefico.com/ko/business/pdf/pcu_actuator_3.pdf 2026-02-02
URL http://www.hyundai-kefico.com/ko/business/pdf/pcu_actuator_7.pd 2026-02-02
URL http://www.hyundai-kefico.com/ko/business/pdf/pcu_actuator_7.pdf 2026-02-02
URL http://www.hyundai-kefico.com/ko/business/pdf/pcu_actuator_9.pdf 2026-02-02
URL http://www.hyundai-kefico.com/ko/careers/job_description.do 2026-02-02
URL http://www.hyundai-kefico.com/ko/development/technology.do 2026-02-02
URL http://www.hyundai-kefico.com/ko/file/guide01.pdf 2026-02-02
URL https://kshe.hyundai-kefico.com/main.do 2026-02-02
URL https://www.hyundai-kefico.com/ 2026-02-02
hostname cpcalendars.livingairsoft.com 2026-02-02
hostname giant.livingairsoft.com 2026-02-02
hostname reviewsgoodday.livingairsoft.com 2026-02-02
hostname sorry.livingairsoft.com 2026-02-02
URL http://giant.livingairsoft.com/ 2026-02-02
URL http://sorry.livingairsoft.com/ 2026-02-02
URL http://www.giant.livingairsoft.com/ 2026-02-02
URL http://www.livingairsoft.com/ 2026-02-02
URL https://giant.livingairsoft.com/ 2026-02-02
URL https://www.giant.livingairsoft.com/ 2026-02-02
URL https://www.livingairsoft.com/ 2026-02-02
URL https://www.ala-link.co.jp/service/ 2026-02-02
URL https://www.ala-link.co.jp/service/a-sas/ 2026-02-02
URL https://www.qdssjyzxf.com/* 2026-02-02
URL https://www.qdssjyzxf.com/* class= 2026-02-02
URL http://thriveat.quest/-V36QG44kZmGrsDmv5QPxIQZiJ4og5-DumkqCxHLqt3l6yrvMAurl= 2026-02-02
URL http://thriveat.quest/1347749b1806faea01.jpgurl= 2026-02-02
URL http://thriveat.quest/1347749b1e5e1b9cac.jpg 2026-02-02
URL http://thriveat.quest/28649c3083b6535897.jpg 2026-02-02
URL http://thriveat.quest/28649c3089aa4ee39d.jpgurl= 2026-02-02
URL http://thriveat.quest/3tTOCLa8XtBuo0yhMwBtcoDSu1kYIaFI87dGo_X4sicrVkC17gurl= 2026-02-02
URL http://thriveat.quest/SsmY0lwXkiolPPtciTeoyu9tzVOZx8MU4aGlnlxf4Sbcs7DM1wurl= 2026-02-02
URL http://thriveat.quest/WtqNKtTraEEWVEhLozLy2Vx6AusWv7WS0C67gVNPTjGpieokTA 2026-02-02
URL http://thriveat.quest/X25kXyhw3e3rnedpMQTslzgOjDzD9GuAJ3TsMAy2cl8ONujlhQurl= 2026-02-02
URL http://thriveat.quest/e362a8f4514fabb1e9.jpg 2026-02-02
URL http://thriveat.quest/e362a8f45583b59b52.jpgurl= 2026-02-02
URL http://thriveat.quest/f39426676660012197.jpgurl= 2026-02-02
URL http://thriveat.quest/f3942667675fb5328c.jpg 2026-02-02
URL http://thriveat.quest/lufBEraAoFEMfH5KnRW9pMTf2dBi9RGyF7fcS9Tyjja51eGgRg 2026-02-02
URL http://thriveat.quest/uQ6iqwvbgjqhEDdwnYpf11verTbIlEvImFHjC5ACJTRDzxPUmA 2026-02-02
URL http://www.thriveat.quest/ 2026-02-02
URL http://www.thriveat.quest/497d4dth1FzA-MseZBsxdRMbx7ljNcLqAaxGtiLqBevq7pPJJQ 2026-02-02
URL http://www.thriveat.quest/UvWB8xW7RwBH10Zf8m8CQGPWB3nk2oiY7lJ4Cx1UpnkAzGAoDwurl= 2026-02-02
URL https://www.thriveat.quest/ 2026-02-02
domain clean-mailbox.com 2026-02-02
URL https://challenge.clean-mailbox.com/360 2026-02-02
URL https://challenge.clean-mailbox.com/390 2026-02-02
hostname arp.qapco.com.qa 2026-02-02
hostname contractors.qapco.com.qa 2026-02-02
hostname fiori.qapco.com.qa 2026-02-02
hostname mobilesync.qapco.com.qa 2026-02-02
hostname vpn01.qapco.com.qa 2026-02-02
URL http://arp.qapco.com.qa 2026-02-02
URL http://contractors.qapco.com.qa 2026-02-02
URL http://fileserv.qapco.com.qa 2026-02-02
URL http://fiori.qapco.com.qa 2026-02-02
URL http://irecruitment.qapco.com.qa/ 2026-02-02
URL http://mobilesync.qapco.com.qa 2026-02-02
URL http://nationalization.qapco.com.qa/active-tenders 2026-02-02
URL http://qapco.com.qa/products/marketing 2026-02-02
URL http://vpn01.qapco.com.qa 2026-02-02
URL http://www.qapco.com.qa/ 2026-02-02
URL http://www.qapco.com.qa/content/muntajat 2026-02-02
URL https://arp.qapco.com.qa 2026-02-02
URL https://arp.qapco.com.qa/ 2026-02-02
URL https://contractors.qapco.com.qa 2026-02-02
URL https://fiori.qapco.com.qa 2026-02-02
URL https://mobilesync.qapco.com.qa 2026-02-02
URL https://vpn01.qapco.com.qa 2026-02-02
URL http://ok.com/share/r/1JxAgfEfgz/ 2026-02-02
URL http://www.ok.com/blah.txt 2026-02-02
URL https://pt.ok.com/pt/city-ovar/cate-cars-others/auto-rádio-rk-538-bluetooth-usb-sd-mp3-|-7-cores-6432084473293112/ 2026-02-02
URL https://qa.ok.com/en/city-doha/cate-activities-groups/ 2026-02-02
URL https://qa.ok.com/en/city-doha/cate-local-moving-under-50-miles/home,-villa,-office-moving-::-shifting-in-reasonable-price-6456182221145712/ 2026-02-02
URL https://qa.ok.com/en/city-doha/cate-local-moving-under-50-miles/moving-shifting-service-6454763848460912/ 2026-02-02
URL https://qa.ok.com/en/city-doha/cate-sports-teams/ 2026-02-02
URL https://qapub.ok.com/biz/en/about 2026-02-02
URL https://qapub.ok.com/biz/en/policy/privacy 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/css/504c0b5581218841.css 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/css/8bb9d422540096ed.css 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/css/8c703215118f2e08.css 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/css/ab4696a2560adaa3.css 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/ic_preview_white_close.837df8a8.png 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/icon-carousel-left-disabled.10da7320.png 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/icon-favorite-dark.ff0a8cd8.png 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/icon-video-play.6a2c121c.png 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/pauseanimation.41337fea.png 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/unFav.d41b10cd.png 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/unmutevolume.7aa58abb.png 2026-02-02
URL https://sgj1.ok.com/yongjia/_next/static/media/input_search.fe13be35.png 2026-02-02
FileHash-SHA256 f54a2f5bb2015cac6c57afa821b4dec459d3856c859d41c945fc50d4a853819d 2026-02-02