IoC Extractor

This IoC extractor identifies Indicators of Compromise (IoCs) by matching patterns, without analyzing the context of the surrounding text. Manual Review and Validation of the extracted IoCs are essential before any action is used.

Parrot TDS takes over web servers and threatens millions – Avast Threat Labs

DATE : 2022-03-25T07:00:00
SOURCE : avast.io

FILE_HASH_SHA256:
e22e88c8ec0f439eebbb6387eeea0d332f57c137ae85cf1d8d1bb4c7ea8bd2f2
daabdec3d5a43bb1c0340451be466d9f90eaa0cfac92fb6beaabc59452c473c3
b63260c1f213c02fcbb5c1a069ab2f1d17031e598fd19673bb639aa7557a9bae
0046fad95da901f398f800ece8af479573a08ebf8db9529851172ead01648faa
15afd9eb66450b440d154e98ed82971f1b968323ff11b839b046ae4bec60f855
b6b51f4273420c24ea7dc13ef4cc7615262ccbdf6f5e5a49dae604ec153055ad
8ad9c598c1fde52dd2bfced5f953ca0d013b0c65feb5ded73585cfc420c95a95
4fffa055d56e48fa0c469a54e2ebd857f23eca73a9928805b6a29a9483dffc21

Domain:
blog.group-ib.com
blog.malwarebytes.com
netsupportsoftware.com
avast.com
clickstat360.com
statclick.net
staticvisit.net
webcachespace.net
syncadv.com
webcachestorage.com
parmsplace.com
ahrealestatepr.com
expresswayautopr.com
xomosagency.com
codigodebarra.co
craigconnors.com
lawrencetravelco.com
maxxcorp.net
2ctmedia.com
accountablitypartner.com
walmyrivera.com
youbyashboutique.com
weightlossihp.com
codingbit.co.in
fishslayerjigco.com
avanzatechnicalsolutions.com
srkpc.com
wholesalerandy.com
mattingsolutions.co
integrativehealthpartners.com
wwpcrisis.com
lilscrambler.com
markbrey.com
nuwealthmedia.com
pocketstay.com
fioressence.com
drpease.com
refinedwebs.com
spillpalletonline.com
altcoinfan.com
windsorbongvape.com
hill-family.us

Url:
https://blog.group-ib.com/prometheus-tds
https://blog.malwarebytes.com/threat-analysis/2018/04/fakeupdates-campaign-leverages-multiple-website-platforms/
https://www.netsupportsoftware.com/