PULSE NAME
IOC - Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities
WHITE celestre 2026-03-27 Modified: 2026-03-27
147
IOCs
HIGH VOLUME
Prolific Russian-aligned cyber espionage group Pawn Storm has deployed a new malware suite that TrendAI™ Research identifies as PRISMEX. The APT group also known as APT28, Fancy Bear, UAC-0001 and Forest Blizzard in its latest observed campaigns target the operational backbone of Ukrainian defense and Western humanitarian and military aid infrastructure. The campaigns, which have been active since at least September 2025, significantly escalated in January 2026, and continue the long-lasting brazen attacks that Pawn Storm deploys against Ukraine since 2014.
Indicators of Compromise (30 / 147 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 domain hostname IPv4
TYPEINDICATORDESCRIPTIONCREATED
FileHash-SHA1 01a3230a0b7987e2ac597e33eaec256a40448484 SHA1 of f0d443055143cbd6bce8ef96b52d430e2db321b37b8b93a2a9d0354651702790 2026-03-27
FileHash-SHA1 03c9f7794bcc691c9c0ba996003199da279f48fe SHA1 of 3cb09154a839a5de6e8ef4a04a933b7362afb56cdc4e91368b237e9bcb1cd7b9 2026-03-27
FileHash-SHA1 1bf3bf9e27fcc89ae7d38dafe5d71d7d9dfd4286 SHA1 of ce2c475461d57f222a6aa22f49420f804a43c2eb29abf8553457a7d30f7cb024 2026-03-27
FileHash-SHA1 22da6a104149cad87d5ec5da4c3153bebf68c411 SHA1 of 2822c72a59b58c00fc088aa551cdeeb92ca10fd23e23745610ff207f53118db9 2026-03-27
FileHash-SHA1 23b6f9c00b9d5475212173ec3cbbcff34c4400a7 SHA1 of 3f446d316efe2514efd70c975d0c87e12357db9fca54a25834d60b28192c6a69 2026-03-27
FileHash-SHA1 34f77c7e57f4f1798835b09c398765cc40414461 SHA1 of be859b4f4576ec09b69a2ef2d119939f7eb31de121aa01d38e1f0b2290f5a15e 2026-03-27
FileHash-SHA1 3b80a13199564e3d8a9d26e14defabee136638f8 SHA1 of 5a88a15a1d764e635462f78a0cd958b17e6d22c716740febc114a408eef66705 2026-03-27
FileHash-SHA1 440e2c7134d8501db45d5785d5b2f5c11f48c884 SHA1 of ff310202cbff28b47f03b4b0129a5b925a4b7b065af002072a3796920720c34e 2026-03-27
FileHash-SHA1 4592e6173a643699dc526778aa0a30330d16fe08 SHA1 of b2ba51b4491da8604ff9410d6e004971e3cd9a321390d0258e294ac42010b546 2026-03-27
FileHash-SHA1 65e8cadb4901556ff9da328d158bc02fa37faf27 SHA1 of d944abab1481457eacf9f1d08f835980c2146ec91513e2eb94714c6abaec5f34 2026-03-27
FileHash-SHA1 7bc3bafa39f61969a577f54bff28c0d1eff75d5c SHA1 of 8c1dc9732884c6078b23953b78314a8d0d8b8d9fe42e5f97a7cd09b8ace943a9 2026-03-27
FileHash-SHA1 7c78c531b059ec7fd83320d2d3ae01e21b1c40e8 SHA1 of 40c2e559992a7f595c593b419930a3f216516c3042ad86fb985348d53b6e01b9 2026-03-27
FileHash-SHA1 850cc399a70713aecf22324f006eefc3a03bc946 SHA1 of f7bda19543074c788c321aed42d955b4d50b7b0a2c3ca83b7f45b5e8b9a10491 2026-03-27
FileHash-SHA1 858e841b91f16d3567b133b3c90d01e0499d5169 SHA1 of 5f397327aeb20718e364bef61e8bad507772708a7d1bf55d8b845170c69f3de0 2026-03-27
FileHash-SHA1 8913090d7329c09b096625e9d57edf6c5d00978e SHA1 of 969d2776df0674a1cca0f74c2fccbc43802b4f2b62ecccecc26ed538e9565eae 2026-03-27
FileHash-SHA1 8e5c60c4355b03cfdbb55276f84e31451ae8db80 SHA1 of 0148c79cdfb21d87731f8e45d38c27242863ec4ea9621c59e537f59ed501c119 2026-03-27
FileHash-SHA1 9bfbd8e440c2b7bc43bcfa446cf3d7a19023de9c SHA1 of aefd15e3c395edd16ede7685c6e97ca0350a702ee7c8585274b457166e86b1fa 2026-03-27
FileHash-SHA1 a45ab1a9dec488278ee9682735d42d61dfc38b9e SHA1 of 8f4bca3c62268fff0458322d111a511e0bcfba255d5ab78c45973bd293379901 2026-03-27
FileHash-SHA1 a91d5a019e99aa5f420940ba2e2669d4bd9a881b SHA1 of ea4679d1c05bef0c38b4d910a87f79070ca2e661779a255f523d57ef1921a1c7 2026-03-27
FileHash-SHA1 c4799d17a4343bd353e0edb0a4de248b99295d4d SHA1 of 1ed863a32372160b3a25549aad25d48d5352d9b4f58d4339408c4eea69807f50 2026-03-27
FileHash-SHA1 c8c84bf33c05fb3a69bc5e2d6377b73649b93dce SHA1 of fd3f13db41cd5b442fa26ba8bc0e9703ed243b3516374e3ef89be71cbf07436b 2026-03-27
FileHash-SHA1 cea7e9323d79054f92634f4032c26d30c1cedd7e SHA1 of 9f4672c1374034ac4556264f0d4bf96ee242c0b5a9edaa4715b5e61fe8d55cc8 2026-03-27
FileHash-SHA1 d577c4a264fee27084ddf717441eb89f714972a5 SHA1 of c91183175ce77360006f964841eb4048cf37cb82103f2573e262927be4c7607f 2026-03-27
FileHash-SHA1 d788d85335e20bb1f173d4d0494629d36083dddc SHA1 of 5a17cfaea0cc3a82242fdd11b53140c0b56256d769b07c33757d61e0a0a6ec02 2026-03-27
FileHash-SHA1 da1c3e92f69e6ca0e4f4823525905cb6969a44ad SHA1 of 0bb0d54033767f081cae775e3cf9ede7ae6bea75f35fbfb748ccba9325e28e5e 2026-03-27
FileHash-SHA1 dc33f3136363a0a18b89522afec4949c23143aff SHA1 of e8889528e2114a700438f73da09449cfdde655a29da6794d0449b5e8aa4dbf2a 2026-03-27
FileHash-SHA1 e3c12aa91067098035feb3caf3011ef954f75777 SHA1 of a1b86c8957f460b78d906e1bdede829c4f3b5500d6449e8eba3ae5c302be2b86 2026-03-27
FileHash-SHA1 e52a9f004f4359ea0f8f9c6eb91731ed78e5c4d3 SHA1 of a876f648991711e44a8dcf888a271880c6c930e5138f284cd6ca6128eca56ba1 2026-03-27
FileHash-SHA1 e55cacbbff9ad573cbaddf8a59bac187bf8c78f3 SHA1 of 52b6fb40e7efb09c2bebe8550178e7e30009600bdedd1acae085d753761b7598 2026-03-27
FileHash-SHA1 f2f66f4c96f93f17b588736455e9b279c44b6049 SHA1 of baad1153e58c86aa1dc9346cdd06be53b5dd2a6cf76202536d6721c934008f8e 2026-03-27