TLP:WHITE15 IOCs
Pirates in the crosshairs: how one cybercrime gang has been infecting book, movie, and TV show fans for years
Malware Families
Diamond Model
Adversary
Infrastructure(6)
Capability(1)
Victim
5W+H Threat Analysis
Analysis unavailable
Indicators of Compromise
Indicators of Compromise15
| Type | Indicator | Confidence | Score | First Seen |
|---|---|---|---|---|
| Domain | qdmagva5.space c2intel-blogmalware | High | 58 | Jun 2, 26 |
| Domain | urush1bar4.online intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
| IP | 107.172.212.235 intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
| Domain | zgj1tam9.space c2intel-blogmalware | High | 58 | Jun 2, 26 |
| MD5 | 02a43b3423367b9dddc24cc7dfc070df exploitfile-hashintel-blog | Medium | 53 | Jun 2, 26 |
| Domain | jeaw520i.space c2intel-blogmalware | High | 58 | Jun 2, 26 |
| Domain | kristina.quest exploitintel-blogmalware | High | 58 | Jun 2, 26 |
| MD5 | 0123456789abcdef0123456789abcdef file-hashintel-blogmalware | Medium | 53 | Jun 2, 26 |
| MD5 | 6a0fe6065d76715feebc1526d456db73 exploitfile-hashintel-blog | Medium | 53 | Jun 2, 26 |
| Domain | r7mvjl67.space c2intel-blogmalware | High | 58 | Jun 2, 26 |
| MD5 | 000102030405060708090a0b0c0d0e0f file-hashintel-blogmalware | Medium | 53 | Jun 2, 26 |
| MD5 | 7f624407ae489324e96a708a09c17e6f exploitfile-hashintel-blog | Medium | 53 | Jun 2, 26 |
| Domain | m4yuri.online exploitintel-blogmalware | High | 58 | Jun 2, 26 |
| Domain | 5d14vnfb.space intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
| Domain | file.ipfs.us.69.mu intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
IOC Relationship Graph
IOC Relationship Graph15 total IOCs
DomainIPMD5