PULSE NAME
VirusTotal Windows Sandbox - steganography
WHITE msudosos 2026-04-07 Modified: 2026-05-07
3481
IOCs
HIGH VOLUME
A full analysis of data gathered from an archive of files stored on a server at the University of California, Los Angeles, and stored in a secure server, has been published online by the National Security Agency (NSA).
Indicators of Compromise (194 / 3481 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
URL https://fritzserver.eu/activation dc1d54dab6ec8c00f70137927504e4f222c8395f10760b6beecfcfa94e08249f 2026-04-07
URL https://fritzserver.eu/activation??XRRAVRACRRDRDCYRURJRHHHCTAQRSBSFYSRPC 2026-04-07
URL https://fritzserver.eu/scripts/a3isapi.dll?A3? 2026-04-07
URL https://fritzserver.eu/scripts/a3isapi.dll?A3?8i 2026-04-07
URL http://ff123.net/identify.html 2026-04-07
URL http://www.getid3.org/phpBB3/viewtopic.php?t=171 2026-04-07
URL http://www.getid3.org/phpBB3/viewtopic.php?t=1930 2026-04-07
URL http://www.getid3.org/phpBB3/viewtopic.php?t=195 2026-04-07
URL http://www.jmcgowan.com/avi.html 2026-04-07
URL http://cartchunk.org:8080/ 2026-04-07
URL http://ghido.shelter.ro/ 2026-04-07
URL http://homepages.slingshot.co.nz/~helmboy/quicktime/formats/qtm-layout.txt 2026-04-07
URL http://jscolor.com 2026-04-07
URL http://madskills.com/public/xml/rss/module/trackback/ 2026-04-07
URL http://test.interpro.com.au/wp-content/themes/interpro/images/btn-new-search-light.png 2026-04-07
URL http://test.interpro.com.au/wp-content/themes/interpro/images/btn-search-back.png 2026-04-07
URL http://test.interpro.com.au/wp-content/themes/interpro/images/btn-search.png 2026-04-07
URL http://www.atsc.org/standards/a_52a.pdf f33c27745f2bd87344be790465ef984a972fd539dc83bd4f61d4242c607ef1ee 2026-04-07
URL http://www.firstpr.com.au/audiocomp/lossless/#Links 2026-04-07
URL http://www.id3.org/id3v2.4.0-frames.txt 2026-04-07
URL http://www.id3.org/mp3frame.html 2026-04-07
URL http://www.nczonline.net/blog/2013/01/15/fixing-skip-to-content-links/ 2026-04-07
URL http://www.pcisys.net/~melanson/codecs/ 2026-04-07
URL http://www.replaygain.org/ 2026-04-07
URL http://www.speex.org/manual/node10.html 5b3fc771f43d8e67bd8957f7b3d9a49eae80b88e43c13cbf16623623e9028375 2026-04-07
URL http://www.wotsit.org/download.asp?f=iso9660 2026-04-07
URL http://www.symauth.com/cps0 2026-04-07
URL http://www.symauth.com/rpa00 2026-04-07
URL https://offlineactivation.chessbase.com/ 2026-04-07
URL http://api.wordpress.org/core/importers/1.1/ 2026-04-07
URL http://api.wordpress.org/core/version-check/1.7/ 2026-04-07
URL http://api.wordpress.org/translations/ 2026-04-07
URL http://atomicparsley.sourceforge.net/mpeg-4files.html 2026-04-07
URL http://aws.amazon.com/releasenotes/1900016175520505 2026-04-07
URL http://aws.amazon.com/sdkforphp2/ 2026-04-07
URL http://code.google.com/p/phpatomlib/ 2026-04-07
URL http://codex.wordpress.org/Right_to_Left_Language_Support 2026-04-07
URL http://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/USER_Events.html 2026-04-07
URL http://docs.aws.amazon.com/ElasticLoadBalancing/latest/DeveloperGuide/access-log-collection.html 2026-04-07
URL http://docs.aws.amazon.com/aws-sdk-php/guide/latest/index.html 2026-04-07
URL http://flac.sourceforge.net/id.html 2026-04-07
URL http://forums.winamp.com/showthread.php?postid=387524 2026-04-07
URL http://framework.zend.com/manual/en/zend.cache.html 2026-04-07
URL http://gmpg.org/xfn/11 2026-04-07
URL http://handbrake.fr/irclogs/handbrake-dev/handbrake-dev20080128_pg2.html 2026-04-07
URL http://lotto.st-andrews.ac.uk/~njh/tag_interchange.html 2026-04-07
URL http://mysite.com/wp-content/plugins/myfolder/mce_plugin.js 2026-04-07
URL http://netghost.narod.ru/gff/graphics/summary/os2bmp.htm 2026-04-07
URL http://pastebin.com/u/hackrepair 2026-04-07
URL http://php.net/fsockopen 2026-04-07
URL http://php.net/manual/en/mbstring.overload.php 2026-04-07
URL http://square.github.com/cube/ 2026-04-07
URL http://tools.ietf.org/html/rfc2821#section-4.5.3.2 2026-04-07
URL http://tta.iszf.irk.ru/ 2026-04-07
URL http://twitter.com/#search?q=$2 2026-04-07
URL http://twitter.com/$2 2026-04-07
URL http://wordpress.org/tag/twentyeleven 2026-04-07
URL http://www.btinternet.com/~AnthonyJ/Atari/programming/avr_format.html 2026-04-07
URL http://www.ebu.ch/tech_t3285.pdf 2026-04-07
URL http://www.freelists.org/archives/matroska-devel/07-2003/msg00010.html 2026-04-07
URL http://www.geocities.co.jp/SiliconValley-Oakland/3664/index.html 2026-04-07
URL http://www.gnu.org/licenses/gpl-faq.html 2026-04-07
URL http://www.hydrogenaudio.org/?showtopic=11785 2026-04-07
URL http://www.hydrogenaudio.org/musepack/klemm/www.personal.uni-jena.de/~pfk/mpp/sv8/ 2026-04-07
URL http://www.opensource.org/licenses/mit-license.php 2026-04-07
URL http://www.php.net/manual/en/function.array-merge-recursive.php 2026-04-07
URL http://www.postfix.org/VERP_README.html 2026-04-07
URL http://www.scri.fsu.edu/~jac/MAD3401/Backgrnd/binary.html 2026-04-07
URL http://www.site.com/ 2026-04-07
URL http://www.sno.phy.queensu.ca/~phil/exiftool/TagNames/Nikon.html 2026-04-07
URL http://www.sno.phy.queensu.ca/~phil/exiftool/TagNames/Nikon.html#NCTG 2026-04-07
URL http://www.uni-jena.de/~pfk/mpp/ 2026-04-07
URL https://bugs.php.net/bug.php?id=37268 2026-04-07
URL https://bugs.php.net/bug.php?id=39923 2026-04-07
URL https://code.google.com/p/mp4v2/wiki/iTunesMetadata 2026-04-07
URL https://codex.wordpress.org/Editing_wp-config.php#WordPress_Upgrade_Constants 2026-04-07
URL https://codex.wordpress.org/Function_Reference/delete_user_meta 2026-04-07
URL https://codex.wordpress.org/Function_Reference/get_user_meta 2026-04-07
URL https://codex.wordpress.org/Function_Reference/update_user_meta 2026-04-07
URL https://codex.wordpress.org/Nginx 2026-04-07
URL https://codex.wordpress.org/Twenty_Fifteen_Theme_Changelog#Version_1.1 2026-04-07
URL https://codex.wordpress.org/Twenty_Fifteen_Theme_Changelog#Version_1.2 2026-04-07
URL https://codex.wordpress.org/Twenty_Fifteen_Theme_Changelog#Version_1.3 2026-04-07
URL https://codex.wordpress.org/Twenty_Fifteen_Theme_Changelog#Version_1.4 2026-04-07
URL https://codex.wordpress.org/Twenty_Fifteen_Theme_Changelog#Version_1.5 2026-04-07
URL https://codex.wordpress.org/Twenty_Fifteen_Theme_Changelog#Version_1.6 2026-04-07
URL https://codex.wordpress.org/Twenty_Fifteen_Theme_Changelog#Version_1.7 2026-04-07
URL https://codex.wordpress.org/WordPress_Widgets 2026-04-07
URL https://core.trac.wordpress.org/ 2026-04-07
URL https://core.trac.wordpress.org/ticket/14636 2026-04-07
URL https://core.trac.wordpress.org/ticket/25888. 2026-04-07
URL https://core.trac.wordpress.org/ticket/31460 2026-04-07
URL https://core.trac.wordpress.org/ticket/33507 2026-04-07
URL https://developer.mozilla.org/en-US/docs/Web/API/DOMTokenList 2026-04-07
URL https://developer.wordpress.org/plugins/ 2026-04-07
URL https://forums.aws.amazon.com/ann.jspa?annID=2286 2026-04-07
URL https://github.com/JamesHeinrich/getID3/issues/111 2026-04-07
URL https://github.com/JamesHeinrich/getID3/issues/52 2026-04-07
URL https://github.com/PHPMailer/PHPMailer/ 2026-04-07
URL https://github.com/aws/aws-sdk-php/blob/master/UPGRADING.md 2026-04-07
URL https://github.com/aws/aws-sdk-php/commit/36ae0f68d2a6dcc3bc28222f60ecb318449c4092#diff-bad2f6eac125 2026-04-07
URL https://github.com/xwp/wp-customize-snapshots/blob/962586659688a5b1fd9ae93618b7ce2d4e7a421c/php/clas 2026-04-07
URL https://gnu.org/licenses/old-licenses/gpl-1.0.html 2026-04-07
URL https://planet.wordpress.org/ 2026-04-07
URL https://plus.google.com/ 2026-04-07
URL https://secure.php.net/ 2026-04-07
URL https://secure.php.net/manual/en/class.datetime.php 2026-04-07
URL https://wordpress.org/donate/ 2026-04-07
URL https://members.openpowerfoundation.org/document/dl/576 2026-04-07
URL http://akaros.cs.berkeley.edu/lxr/akaros/kern/arch/x86/rdtsc_test.c 2026-04-07
URL http://creativecommons.org/ns 2026-04-07
URL http://en.cppreference.com/w/cpp/types/is_constant_evaluated 2026-04-07
URL http://fsf.org/ 2026-04-07
URL http://gcc.gnu.org/onlinedocs/gcc/Other-Builtins.html#:~:text=__builtin_is_constant_evaluated 2026-04-07
URL http://infocenter.arm.com/help/index.jsp?topic=/com.arm.doc.ddi0500f/CIHBIBBA.html 2026-04-07
URL http://infocenter.arm.com/help/topic/com.arm.doc.ihi0073a/IHI0073A_arm_neon_intrinsics_ref.pdf 2026-04-07
URL http://libcxx.llvm.org/cxx1z_status.html 2026-04-07
URL http://people.math.sfu.ca/~cbm/aands/abramowitz_and_stegun.pdf 2026-04-07
URL http://people.maths.ox.ac.uk/gilesm/files/gems_erfinv.pdf 2026-04-07
URL http://sodipodi.sourceforge.net/DTD/sodipodi-0.dtd 2026-04-07
URL http://www.apache.org/licenses/LICENSE-2.0 2026-04-07
URL http://www.freedesktop.org/standards/PolicyKit/1/policyconfig.dtd 2026-04-07
URL http://www.gnu.org/licenses/ 2026-04-07
URL http://www.gnu.org/philosophy/why-not-lgpl.html 2026-04-07
URL http://www.inkscape.org/namespaces/inkscape 2026-04-07
URL http://www.netlib.org/toms/index.html 2026-04-07
URL http://www.open-std.org/jtc1/sc22/wg21/docs/papers/2018/p0556r3.html 2026-04-07
URL http://www.open-std.org/jtc1/sc22/wg21/docs/papers/2019/p0553r4.html 2026-04-07
URL http://www.open-std.org/jtc1/sc22/wg21/docs/papers/2019/p1355r2.html 2026-04-07
URL http://www.open-std.org/jtc1/sc22/wg21/docs/papers/2020/p1956r1.pdf 2026-04-07
URL https://archive.org/details/DTIC_ADA261511/page/n75 2026-04-07
URL https://bitbucket.org/pypa/pypi/issues/120/binary-wheels-for-linux-are-not-supported 2026-04-07
URL https://clang.llvm.org/docs/LanguageExtensions.html#:~:text=__is_trivially_relocatable 2026-04-07
URL https://cloud.google.com/security/encryption-in-transit/application-layer-transport-security 2026-04-07
URL https://cmake.org/cmake/help/v3.6/module/FindOpenSSL.html 2026-04-07
URL https://cmake.org/cmake/help/v3.6/module/FindZLIB.html 2026-04-07
URL https://core.ac.uk/download/pdf/82140723.pdf 2026-04-07
URL https://datatracker.ietf.org/doc/html/rfc3986#section-2.2 2026-04-07
URL https://datatracker.ietf.org/doc/html/rfc3986#section-2.3 2026-04-07
URL https://datatracker.ietf.org/doc/html/rfc3986#section-3.1 2026-04-07
URL https://datatracker.ietf.org/doc/html/rfc3986#section-3.2 2026-04-07
URL https://datatracker.ietf.org/doc/html/rfc3986#section-3.3 2026-04-07
URL https://datatracker.ietf.org/doc/html/rfc3986#section-6.2.2.1 2026-04-07
URL https://developers.google.com/protocol-buffers/docs/proto3#json. 2026-04-07
URL https://docs.python.org/3/library/threading.html#threading.Event.wait 2026-04-07
URL https://en.cppreference.com/w/cpp/header/type_traits 2026-04-07
URL https://eprint.iacr.org/2010/041.pdf 2026-04-07
URL https://gcc.gnu.org/onlinedocs/gcc-4.9.0/gcc/PowerPC-AltiVec_002fVSX-Built-in-Functions.html 2026-04-07
URL https://github.com/Edward-Knight/landlock 2026-04-07
URL https://github.com/abseil/abseil-cpp/issues/1479 2026-04-07
URL https://github.com/cncf/xds/blob/eded343319d09f30032952beda9840bbd3dcf7ac/xds/data/orca/v3/orca_load 2026-04-07
URL https://github.com/envoyproxy/envoy/issues/6614 2026-04-07
URL https://github.com/flathub/org.x.Warpinator.git 2026-04-07
URL https://github.com/googleapis/googleapis/blob/master/google/api/http.proto 2026-04-07
URL https://github.com/googleapis/googleapis/blob/master/google/rpc/status.proto. 2026-04-07
URL https://github.com/grpc 2026-04-07
URL https://github.com/grpc/grpc-proto/blob/master/grpc/gcp/altscontext.proto 2026-04-07
URL https://github.com/grpc/grpc.git 2026-04-07
URL https://github.com/grpc/grpc/blob/master/src/proto/grpc/channelz/channelz.proto. 2026-04-07
URL https://github.com/grpc/grpc/issues/12531 2026-04-07
URL https://github.com/grpc/grpc/issues/15334 2026-04-07
URL https://github.com/grpc/grpc/issues/15340 2026-04-07
URL https://github.com/grpc/grpc/issues/15662 2026-04-07
URL https://github.com/grpc/grpc/issues/17255 2026-04-07
URL https://github.com/grpc/grpc/issues/17563 2026-04-07
URL https://github.com/grpc/grpc/issues/19464 2026-04-07
URL https://github.com/grpc/grpc/issues/23586 2026-04-07
URL https://github.com/grpc/grpc/issues/24028 2026-04-07
URL https://github.com/grpc/grpc/issues/25434 2026-04-07
URL https://github.com/grpc/grpc/issues/6980 2026-04-07
URL https://github.com/grpc/grpc/pull/17586 2026-04-07
URL https://github.com/grpc/proposal/blob/master/A18-tcp-user-timeout.md 2026-04-07
URL https://github.com/linuxmint/warpinator 2026-04-07
URL https://github.com/linuxmint/warpinator/issues 2026-04-07
URL https://github.com/lu-zero/valgrind/blob/master/none/tests/ppc64/test_isa_2_07_part1.c 2026-04-07
URL https://github.com/madler/zlib/issues/218 2026-04-07
URL https://google.github.io/styleguide/cppguide.html#Template_metaprogramming 2026-04-07
URL https://grpc.io 2026-04-07
URL https://linuxmint.com/ 2026-04-07
URL https://pki.google.com/roots.pem. 2026-04-07
URL https://raw.githubusercontent.com/linuxmint/warpinator/master/data/appdata/warpinator-demo-screensho 2026-04-07
URL https://stackoverflow.com/q/42005462 2026-04-07
URL https://stackoverflow.com/q/52410931/3286653 2026-04-07
URL https://stackoverflow.com/questions/45637888/how-to-determine-armv8-features-at-runtime-on-ios 2026-04-07
URL https://tools.ietf.org/html/rfc3986#section-3.4 2026-04-07
URL https://tools.ietf.org/html/rfc4632 2026-04-07
URL https://translations.launchpad.net/linuxmint/latest/ 2026-04-07
URL https://www.apache.org/licenses/LICENSE-2.0 2026-04-07
URL https://www.boost.org/doc/libs/1_52_0/libs/math/doc/sf_and_dist/html/math_toolkit/special/sf_beta/ib 2026-04-07
URL https://www.jstor.org/stable/2346797?seq=3#page_scan_tab_contents. 2026-04-07
URL https://www.jstor.org/stable/2346798?read-now=1&seq=4#page_scan_tab_contents 2026-04-07
URL https://www.jstor.org/stable/2346887?seq=1#page_scan_tab_contents 2026-04-07
URL https://www.linuxmint.com/donors.php 2026-04-07
URL https://www.openssl.org/docs/man1.1.0/man3/SSL_get_peer_cert_chain.html. 2026-04-07
References (7)
↗ https://vtbehaviour.commondatastorage.googleapis.com/fdaa5bef329a103c6a38f971023a23214954b2038f74091fcb85a6c5b3ee6793_VirusTotal%20Jujubox.html?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1775524056&Signature=IRSYa160YBvfdiw9tFfaCqtY9z8rs45D1Ve6%2BpTMouiseLJI%2F4JyM0rAk55VfNmIzUGfryzxeHvYct6ob6QriZBkNDXCbk6M3QVOAqXQrpNBhFRpRMzqvG4bGBzfXaGO3JH%2FTaYejWQRB7Mjas3ENDiTanlcgTbBa9F0dlIn9glEYIvRq5IaDr1xMbyygt4IT0oJ2B27OxFY8TcpM4T3emxrp17iYN%2FF3Imo6bFRTYVHFbPF ↗ https://vtbehaviour.commondatastorage.googleapis.com/1cf762ebb36225bf2de49fd9baa4a724fb6fc6552982f7cde3eb8750a1396dec_Zenbox.html?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1775524101&Signature=YafvX%2FKbHVKXFED6nVuUgoWZdNWqqwItgxDl5Bp9Zdo%2Ff%2FTWC5kJWRGA47ZowHZh4EHc%2FFCAhOR4hifZEhlDC9cbmSs%2FMY5ulZLp78eChDgCY4CIs2SwjotobahaTms3z7t7TRUdIHKGnwY%2BBKFBQDjnoeTV7AOaSpqizw51XA60Hu%2BUYVLPbGrLff%2B64VYK3uuHUNH1TrAYfUa%2BkJqwlpueD%2Bcp4iqLPBZC%2Fje1DnEVe8e% ↗ https://vtbehaviour.commondatastorage.googleapis.com/85b51c6796de06101424d187c6bca9f90da990eabe4045a0006bc7c1bf8dc4b3_VirusTotal%20Box%20of%20Apples.html?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1775524206&Signature=gWMfmLkoqQlDMb2RkNFcKrRqEBTNwkGuJnOc9uYaCYYGUohkAqUCNV2fjuOBD99RjZOm8wqWNn%2FXYjXHsOu2xg1EehIoxPcojD6qR1oGvRdqYtGScazp5qTmu2Mt95kBncGOrN3FpTiqA2TEqGmHrtBquZHDt7huxi3puJ3z0X1nqPFbmirt%2FRkfDFS9TEQp6piBIbuuoVClP9myw%2FdSfLOMovw4i0CKwtUFikUQ ↗ https://vtbehaviour.commondatastorage.googleapis.com/85b51c6796de06101424d187c6bca9f90da990eabe4045a0006bc7c1bf8dc4b3_Zenbox.html?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1775524231&Signature=Wv5G2ljAtLZs5UD7wbg53RFvucHo7IiRhkyNVLmeK6NA42BzJseS4otL9OJksO0gkN3drBP2pHrsvpqZqi7sTKiOXrVsQiR9kD1qF4wp7uKJfdbPjqUwlanEbw5yw5kd0CSm9P6dQm1uok3EVaAdczKUEAbW2aMMiUzm4WkW2MEFZaL0f2guNhLxgcALLfBbr%2BaPq6FvfadgfDFj1rHHbiG7L4%2FWVnyJeK%2BpMRcTKcx%2FvKJPKycGQtIQzPlg7a ↗ https://vtbehaviour.commondatastorage.googleapis.com/85b51c6796de06101424d187c6bca9f90da990eabe4045a0006bc7c1bf8dc4b3_Zenbox%20Linux.html?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1775524270&Signature=Yn%2ByoAMXhl%2Fwe0poWrffqiJpt3ipHbmhmOj3wrO%2Bv0aI4XM%2BGTb3WYnUbwO%2BB4%2FvHy5B2E%2FI7lF5iq%2BFIW9tRm2ZBhCZY8p9zroZfwv1uFCqifhQLOzXFHGMp%2FptY89k%2B3c4Yi%2BoV6DCdRmHM9fAY5Y%2F%2FSzimGN6G2gOBFIFrOiAaMr1OO4tCC2KBL0a7pAYEx7pUEonfvjmdj2S7X8ZF2s4yhp30aASJGdx ↗ https://vtbehaviour.commondatastorage.googleapis.com/de5a9417dec59d03c07c57078270197621ac62397b5a691f07af522441f7e58a_VirusTotal%20Box%20of%20Apples.html?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1775524306&Signature=cXthPzwlRZxsgwUQSNKMDsPG6OynZQby1pdDJzqxAgQCcbcq37BfhqePhPxs9aKAB2o1j55rzzqlUEwiBke5LjKvRpZTJih560GCz5YWc9qeHPBBv%2FVcUEL%2FhoqasTTjfAJjT1l%2BzRVeQ%2B%2F8cuEf9QIfBl%2BvXhzSB%2B9p0JtpepQKunyqYNbRyzJ5S23SKkW3sqxPkbN0ywosD9wAT%2FqPRrowVS1rou ↗ https://vtbehaviour.commondatastorage.googleapis.com/de5a9417dec59d03c07c57078270197621ac62397b5a691f07af522441f7e58a_Zenbox.html?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1775524330&Signature=ZJzvK6ex%2B4WDprMFZXUHM%2BlO6Ocvx3kqb%2FSV%2Br7oW4AldeE%2FSYCUkm1fOjShI0dT2puSwxTD0dbfVH%2FxiHe5YY9c68q0bgC%2FdWgIIlm5IPfDNaglObv3%2BFsaR%2Bbt%2F2za%2FHaRujccLsITjfKH55VkVPdFNOTWeypsbVndDtzOkIkK3VmWNZQGEQnJ1HqMlPPfWvp5r58eVXUhAT%2BbwZ9Sg9LXqdGPZsBgt5hdKVT%2Bev4h