IoC Extractor

This IoC extractor identifies Indicators of Compromise (IoCs) by matching patterns, without analyzing the context of the surrounding text. Manual Review and Validation of the extracted IoCs are essential before any action is used.

Excel Document Delivers Multiple Malware by Exploiting CVE-2017-11882 – Part II | FortiGuard Labs

DATE : 2022-10-03T07:00:00
SOURCE : fortinet.com

CVE:
cve-2017-11882

FILE_HASH_SHA256:
D1EA94C241E00E8E59A7212F30A9117393F9E883D2B509E566505BC337C473E3
9D621005649A185E07D44EC7906530B8269DF0A84587DEB3AAC8707C5DD88B8C

Domain:
tempuri.org
schemas.xmlsoap.org
lutanedukasi.co.id
sinmac.duckdns.org
battle.net

Url:
http://tempuri.org/Endpoint/CheckConnect&8220
http://schemas.xmlsoap.org/soap/envelope/&8221
http://tempuri.org/&8221