PULSE NAME
CAPE Sandbox - Sanbox Deceipt - US Based Sigma
WHITE msudosos 2026-03-30 Modified: 2026-03-30
132
IOCs
HIGH VOLUME
A security alert has been issued over the weekend, with links to the linkedin.com website being linked to a security breach dating back to 1970. and the first of its kind in the UK.
Indicators of Compromise (132)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 IPv4 domain URL hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 895d2a337cecd4bf36e6ff9a7e669a63 2026-03-30
FileHash-SHA1 9176c614fa5aca9af6ceba4996cc9128842803f7 2026-03-30
FileHash-SHA256 644031a68bde879af85bcc9cb3e6fa1e9a6b0f61d49307581974b5dbc09d3de8 2026-03-30
IPv4 104.100.82.28 CC=US ASN=AS16625 akamai technologies inc. 2026-03-30
IPv4 104.114.76.177 CC=US ASN=AS20940 akamai international b.v. 2026-03-30
IPv4 104.114.76.178 CC=US ASN=AS20940 akamai international b.v. 2026-03-30
IPv4 13.107.246.70 CC=US ASN=AS8068 microsoft corporation 2026-03-30
IPv4 13.107.42.16 CC=US ASN=AS8068 microsoft corporation 2026-03-30
IPv4 192.229.211.108 CC=US ASN=AS15133 verizon 2026-03-30
IPv4 20.106.86.13 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 20.114.59.183 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 20.190.190.129 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 20.190.190.131 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 20.190.190.193 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 20.190.190.195 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 20.190.190.196 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 20.242.39.171 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 23.216.147.61 CC=US ASN=AS20940 akamai international b.v. 2026-03-30
IPv4 23.216.147.78 CC=US ASN=AS20940 akamai international b.v. 2026-03-30
IPv4 40.126.62.129 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 40.126.62.130 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 40.126.62.131 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 40.83.247.108 CC=US ASN=AS8075 microsoft corporation 2026-03-30
IPv4 52.191.219.104 CC=US ASN=AS8075 microsoft corporation 2026-03-30
domain location.host 2026-03-30
FileHash-MD5 5d79edf64e03689ff559a54e9d9487bc 2026-03-30
FileHash-MD5 7215ee9c7d9dc229d2921a40e899ec5f MD5 of 36a9e7f1c95b82ffb99743e0c5c4ce95d83c9a430aac59f84ef3cbfab6145068 2026-03-30
FileHash-MD5 824203feb9474b64b6097144df8d8dbf 2026-03-30
FileHash-SHA1 b858cb282617fb0956d960215c8e84d1ccf909c6 SHA1 of 36a9e7f1c95b82ffb99743e0c5c4ce95d83c9a430aac59f84ef3cbfab6145068 2026-03-30
FileHash-SHA256 36a9e7f1c95b82ffb99743e0c5c4ce95d83c9a430aac59f84ef3cbfab6145068 2026-03-30
IPv4 117.50.156.210 CC=CN ASN=AS4808 china unicom beijing province network 2026-03-30
IPv4 13.107.42.14 CC=US ASN=AS8068 microsoft corporation 2026-03-30
IPv4 13.107.21.239 2026-03-30
IPv4 13.107.6.158 2026-03-30
IPv4 173.194.203.100 2026-03-30
IPv4 173.194.203.101 2026-03-30
IPv4 173.194.203.102 2026-03-30
IPv4 173.194.203.113 2026-03-30
IPv4 173.194.203.138 2026-03-30
IPv4 173.194.203.139 2026-03-30
IPv4 204.79.197.203 2026-03-30
IPv4 204.79.197.239 2026-03-30
IPv4 23.62.46.11 2026-03-30
IPv4 23.62.46.14 2026-03-30
IPv4 23.62.46.15 2026-03-30
IPv4 23.62.46.19 2026-03-30
IPv4 23.62.46.7 2026-03-30
IPv4 23.62.46.9 2026-03-30
IPv4 72.21.81.240 2026-03-30
IPv4 74.125.199.100 2026-03-30
IPv4 74.125.199.101 2026-03-30
IPv4 74.125.199.102 2026-03-30
IPv4 74.125.199.113 2026-03-30
IPv4 74.125.199.138 2026-03-30
IPv4 74.125.199.139 2026-03-30
URL http://disallowedcertstl.cab?9eca949cf4fc8e55 2026-03-30
URL http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/disallowedcertstl.cab?9eca949cf4fc8e55 2026-03-30
URL http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D 2026-03-30
URL http://www.msftconnecttest.com/connecttest.txt 2026-03-30
domain disallowedcertstl.cab 2026-03-30
hostname a1961.g2.akamai.net 2026-03-30
hostname a416.dscd.akamai.net 2026-03-30
hostname atm-settingsfe-prod-geo2.trafficmanager.net 2026-03-30
hostname azureedge-t-prod.trafficmanager.net 2026-03-30
hostname b-0005.b-msedge.net 2026-03-30
hostname bg.apr-52dd2-0503.edgecastdns.net 2026-03-30
hostname business-bing-com.b-0005.b-msedge.net 2026-03-30
hostname business.bing.com 2026-03-30
hostname bzib.nelreports.net 2026-03-30
hostname bzib.nelreports.net.akamaized.net 2026-03-30
hostname cdn.onenote.net 2026-03-30
hostname cdn.onenote.net.edgekey.net 2026-03-30
hostname client.wns.windows.com 2026-03-30
hostname config-edge-skype.l-0007.l-msedge.net 2026-03-30
hostname config.edge.skype.com 2026-03-30
hostname config.edge.skype.com.trafficmanager.net 2026-03-30
hostname cs11.wpc.v0cdn.net 2026-03-30
hostname ctldl.windowsupdate.com 2026-03-30
hostname ctldl.windowsupdate.com.delivery.microsoft.com 2026-03-30
hostname dual-a-0036.a-msedge.net 2026-03-30
hostname e1553.dspg.akamaiedge.net 2026-03-30
hostname e86303.dscx.akamaiedge.net 2026-03-30
hostname edge-microsoft-com.dual-a-0036.a-msedge.net 2026-03-30
hostname edge-mobile-static.afd.azureedge.net 2026-03-30
hostname edge-mobile-static.azureedge.net 2026-03-30
hostname edge.microsoft.com 2026-03-30
hostname fe3.delivery.mp.microsoft.com 2026-03-30
hostname fe3cr.delivery.mp.microsoft.com 2026-03-30
hostname fp2e7a.wpc.2be4.phicdn.net 2026-03-30
hostname fp2e7a.wpc.phicdn.net 2026-03-30
hostname fr.linkedin.com 2026-03-30
hostname glb.cws.prod.dcat.dsp.trafficmanager.net 2026-03-30
hostname glb.sls.prod.dcat.dsp.trafficmanager.net 2026-03-30
hostname hlb.apr-52dd2-0.edgecastdns.net 2026-03-30
hostname l-0007.config.skype.com 2026-03-30
hostname l-0007.l-msedge.net 2026-03-30
hostname login.live.com 2026-03-30
hostname login.msa.msidentity.com 2026-03-30
hostname maps-win-com-cdn.afd.azureedge.net 2026-03-30
hostname maps-win-com-cdn.azureedge.net 2026-03-30
hostname maps.windows.com 2026-03-30
hostname ncsi-geo.trafficmanager.net 2026-03-30
hostname ocsp.digicert.com 2026-03-30
hostname ocsp.edge.digicert.com 2026-03-30
hostname prdv4a.aadg.msidentity.com 2026-03-30
hostname s-part-0042.t-0009.t-msedge.net 2026-03-30
hostname settings-prod-eus-1.eastus.cloudapp.azure.com 2026-03-30
hostname settings-prod-wus3-1.westus3.cloudapp.azure.com 2026-03-30
hostname settings-win.data.microsoft.com 2026-03-30
hostname shed.dual-low.s-part-0042.t-0009.t-msedge.net 2026-03-30
hostname sls.update.microsoft.com 2026-03-30
hostname slscr.update.microsoft.com 2026-03-30
hostname wns.notify.trafficmanager.net 2026-03-30
hostname wu-b-net.trafficmanager.net 2026-03-30
hostname wu.azureedge.net 2026-03-30
hostname wu.ec.azureedge.net 2026-03-30
hostname www-www.bing.com.trafficmanager.net 2026-03-30
hostname www.bing.com 2026-03-30
hostname www.bing.com.edgekey.net 2026-03-30
hostname www.linkedin.cn 2026-03-30
hostname www.linkedin.com 2026-03-30
hostname www.msftconnecttest.com 2026-03-30
hostname www.msftncsi.com.edgesuite.net 2026-03-30
hostname www.tm.lg.prod.aadmsa.trafficmanager.net 2026-03-30
hostname www.tm.v4.a.prd.aadg.trafficmanager.net 2026-03-30
URL http://www.linkedin.cn 2026-03-30
URL http://www.linkedin.cn/ 2026-03-30
URL http://www.linkedin.com 2026-03-30
URL http://www.linkedin.com/ 2026-03-30
URL https://www.linkedin.cn/incareer/hp/ 2026-03-30
URL https://www.linkedin.com/hp 2026-03-30
domain linkedin.com 2026-03-30