Domain
Value
l00k.vo-3-n.ru
Association: ClearFake
Domain
Value
rook.ju-5-q.ru
Association: ClearFake
Domain
Value
r0se.vo-3-n.ru
Association: ClearFake
IP Address
Value
8.152.100.155:80
Association: Cobalt Strike
Domain
Value
goat.tu-7-q.ru
Association: ClearFake
Domain
Value
golf.tu-7-q.ru
Association: ClearFake
IP Address
Value
173.254.215.95:443
Association: PoshC2
IP Address
Value
94.141.122.234:3232
Association: DCRat
IP Address
Value
95.181.212.113:12313
Association: Orcus RAT
Domain
Value
cloudstoragebox.com
Association: Havoc
IP Address
Value
5.180.151.9:8082
Association: Hook
Domain
Value
www.aadcdnn.m365.1drive.zip
Association: Unknown malware
IP Address
Value
8.130.79.38:1234
Association: Cobalt Strike
IP Address
Value
8.130.22.97:80
Association: Cobalt Strike
IP Address
Value
8.130.22.97:443
Association: Cobalt Strike
IP Address
Value
46.151.33.182:443
Association: Cobalt Strike
IP Address
Value
8.219.115.51:2095
Association: Cobalt Strike
IP Address
Value
34.131.39.45:80
Association: Cobalt Strike
Domain
Value
dune.tu-7-q.ru
Association: ClearFake
Domain
Value
b1rd.tu-7-q.ru
Association: ClearFake