IoC Extractor

This IoC extractor identifies Indicators of Compromise (IoCs) by matching patterns, without analyzing the context of the surrounding text. Manual Review and Validation of the extracted IoCs are essential before any action is used.

Kimsuky’s GoldDragon cluster and its C2 operations

DATE : 2022-08-18T07:00:00
SOURCE : securelist.com

Domain:
leehr24.mywebcommunity.org
leehr36.mypressonline.com
weworld78.atwebpages.com
glib-warnings.000webhostapp.com
21nari.mypressonline.com
chunyg21.sportsontheweb.net
hochulidncheon.mypressonline.com
hochulincheon.mypressonline.com
yulsohnyonsei.atwebpages.com
yulsohnyonsei.medianewsonline.com
dmengineer.co.kr
225b4d3c305f43e1a590.blogspot.com
weworld59.myartsonline.com
naver.com
kisa.or.kr
blogspot.com
ac.kr
attach.42web.ioattachment.a0001.netbigfile.totalh.netclouds.rf.gdglobal.onedriver.epizy.comglobal.web1337.net
weworld79.mygamesonline.org
0knw2300.mypressonline.com
21nari.getenjoyment.net
21nari.scienceontheweb.net
chmguide.atwebpages.com
faust22.mypressonline.com
hochdlincheon.mypressonline.com
hochuliasdfasfdncheon.mypressonline.com
hochulincddheon.mypressonline.com
hochulindcheon.mypressonline.com
hochulindddcheon.mypressonline.com
hochulinsfdgasdfcheon.mypressonline.com
koreajjjjj.atwebpages.com
koreajjjjj.sportsontheweb.net
kpsa20201.getenjoyment.net
o61666ch.getenjoyment.net
yulsohnyonsei.atwewbpages.com
3a8f846675194d779198.blogspot.com
c52ac2f8ac0693d8790c.blogspot.com
leejong-sejong.blogspot.com

Url:
https://mail.google.com&8217