IoC Extractor

This IoC extractor identifies Indicators of Compromise (IoCs) by matching patterns, without analyzing the context of the surrounding text. Manual Review and Validation of the extracted IoCs are essential before any action is used.

Crypto stealing campaign spread via fake cracked software

DATE : 2022-05-26T07:00:00
SOURCE : avast.com

FILE_HASH_SHA256:
bcb1c06505c8df8cf508e834be72a8b6adf67668fcf7076cd058b37cf7fc8aaf
c283a387af09f56ba55d92a796edcfa60678e853b384f755313bc6f5086be4ee
ac47ed991025f58745a3ca217b2091e0a54cf2a99ddb0c98988ec7e5de8eac6a
5423be642e040cfa202fc326027d878003128bff5dfdf4da6c23db00b5942055
9254436f13cac035d797211f59754951b07297cf1f32121656b775124547dbe7
9d66a6a6823aea1b923f0c200dfecb1ae70839d955e11a3f85184b8e0b16c6f8
97f1ae6502d0671f5ec9e28e41cba9e9beeffcc381aae299f45ec3fcc77cdd56
e5286671048b1ef44a4665c091ad6a9d1f77d6982cf4550b3d2d3a9ef1e24bc7

Domain:
freefilesxx.xyz
filesend.jp
mediafire.com
goes12by.cfd
baed92all.cfd
aeddkiu6745q.cfd
14redirect.cfd
lixn62ft.cfd
kohuy31ng.cfd
wae23iku.cfd
yhf78aq.cfd
xzctn14il.cfd
mihatrt34er.cfd
oliy67sd.cfd
er67ilky.cfd
bny734uy.cfd
uzas871iu.cfd
dert1mku.cfd
fr56cvfi.cfd
asud28cv.cfd
freefiles34.xyz
freefiles33.xyz
wrtgh56mh.cfd