PULSE NAME
MalSpam_28032026
WHITE soc_columbus 2026-04-28 Modified: 2026-05-28
14
IOCs
MEDIUM VOLUME
IoCs Extracted from Fortimail quarantine email. Analysis Verify your account settings now!.eml (MD5: D65936EBA4C38EE3D30441A9671FC6C3) Malicious activity - Interactive analysis ANY.RUN. Microsoft users are being urged to log in to their accounts on the same day as they are on a different account at the other end of the world. and here is the full list of files:
Indicators of Compromise (14)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL email hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 d65936eba4c38ee3d30441a9671fc6c3 2026-04-28
FileHash-MD5 a397e5983d4a1619e36143b4d804b870 MD5 of 9c70f766d3b84fc2bb298efa37cc9191f28bec336329cc11468cfadbc3b137f4 2026-04-28
FileHash-MD5 d414dd4f9db345fa8003e32adc81b362 2026-04-28
FileHash-SHA1 aa135a8cc2469cfd1ef2d7955f027d95be5dfbd4 SHA1 of 9c70f766d3b84fc2bb298efa37cc9191f28bec336329cc11468cfadbc3b137f4 2026-04-28
FileHash-SHA256 0b19073158a92af322e7905866fa6143188ef74b1dc34a0fece6a4a57e475c1f 2026-04-28
FileHash-SHA256 5cb450ffe10c47db2098cedeec4590325f883ed3cd77f4f97cd7f47b88bfcfd9 2026-04-28
FileHash-SHA256 68590788b1ba533d2f2ca85f81dc711238a37a095722823f5651177b38fc2b61 2026-04-28
FileHash-SHA256 9c70f766d3b84fc2bb298efa37cc9191f28bec336329cc11468cfadbc3b137f4 2026-04-28
FileHash-SHA256 acd8da0208e5e026103d8189577b0d39e60a9ff1400e060bd402aa127d145079 2026-04-28
FileHash-SHA256 cdb4ee2aea69cc6a83331bbe96dc2caa9a299d21329efb0336fc02a82e1839a8 2026-04-28
FileHash-SHA256 ce0b9919e8e69ec191a2539386cc49c063427101c4e0facb5fb27f530f268338 2026-04-28
URL https://static.edge.microsoftapp.net/default/cloud_config_observers.json 2026-04-28
email info@printwareonline.com 2026-04-28
hostname static.edge.microsoftapp.net 2026-04-28