IoC Extractor

This IoC extractor identifies Indicators of Compromise (IoCs) by matching patterns, without analyzing the context of the surrounding text. Manual Review and Validation of the extracted IoCs are essential before any action is used.

SQL Brute Force Leads to BlueSky Ransomware

DATE : 2023-11-29T07:00:00
SOURCE : thedfirreport.com

CVE:
cve-2023-27350

FILE_HASH_MD5:
c12f54a3f91dc7bafd92cb59fe009a35
ec74a5c51106f0419184d0dd08fb05bc
9e88c287eb376f3c319a5cb13f980d36
7b68bc3dd393c2e5273f180e361f178a
0c0195c48b6b8582fa6f6373032118da
bfd36fd6a20ccd39f5c3bb64a5c5dd8b
08bdf000031bbad1a836381f73adace5
42a80cc2333b612b63a859f17474c9af

FILE_HASH_SHA1:
501af977080d56a55ff0aeba66b58e7f3d1404ea
07610f11d3b8ccb7b60cc8ad033dda6c7d3940c4
d25340ae8e92a6d29f599fef426a2bc1b5217299
e938646862477e598fcda20d0b7551863f8b651c
3dff4ae3c421c9143978f8fc9499dca4aed0eac5
e7be97fb2200eb99805e39513304739a7a28b17e

FILE_HASH_SHA256:
74b6d14e35ff51fe47e169e76b4732b9f157cd7e537a2ca587c58dbdb15c624f
d4f4069b1c40a5b27ba0bc15c09dceb7035d054a022bb5d558850edfba0b9534
11bd2c9f9e2397c9a16e0990e4ed2cf0679498fe0fd418a3dfdac60b5c160ee5
35b95496b243541d5ad3667f4aabe2ed00066ba8b69b82f10dd1186872ce4be2
f955eeb3a464685eaac96744964134e49e849a03fc910454faaff2109c378b0b
3b463c94b52414cfaad61ecdac64ca84eaea1ab4be69f75834aaa7701ab5e7d0

Domain:
microsoftwindows.net
framework.net
sigmasearchengine.com