APT_CyberCriminal_Campagin_.../2017/2017.07.27.Operation_Wilted_Tulip/indicators-wilted_tulip.csv
cybermonitor 6ecca466ac 2022
2022-04-27 16:20:36 +08:00

18 KiB
Executable File
Raw Permalink Blame History

1TypeValue
2URLhttp://js.jguery.net/main.js
3URLhttp://pht.is.nlb-deploy.edge-dyn.e11.f20.ads-youtube.online/winini.exe
4URLhttp://38.130.75.20/check.html
5URLhttp://update.microsoft-office.solutions/license.doc
6URLhttp://update.microsoft-office.solutions/error.html
7URLhttp://main.windowskernel14.com/spl/update5x.zip
8URLhttp://img.twiter-statics.info/i/658A6D6AE42A658A6D6AE42A/0de9c5c6599fdf5201599ff9b30e0000/6E24E58CFC94/icon.png
9URLhttp://files0.terendmicro.com/
10URLhttp://ssl.pmo.gov.il-dana-naauthurl1-welcome.cgi.primeminister-goverment-techcenter.tech/%D7%A1%D7%A7%D7%A8%20%D7%A9%D7%A0%D7%AA%D7%99.docx
11URLhttp://ea-in-f155.1e100.microsoft-security.host/
12URLhttps://ea-in-f155.1e100.microsoft-security.host/mTQJ
13URLhttp://iba.stage.7338879.i.gtld-servers.services
14URLhttp://doa.stage.7338879.i.gtld-servers.services
15URLhttp://fda.stage.7338879.i.gtld-servers.services
16URLhttp://rqa.stage.7338879.i.gtld-servers.services
17URLhttp://qqa.stage.7338879.i.gtld-servers.services
18URLhttp://api.02ac36110.49318.a.gtld-servers.zone
19URLs1w-amazonaws.office-msupdate.solutions
20URLa104-93-82-25.mandalasanati.info/iBpa
21URLhttp://fetchnews-agency.news-bbc.press/pictures.html
22URLhttp://fetchnews-agency.news-bbc.press/omnews.doc
23URLhttp://fetchnews-agency.news-bbc.press/en/20170/pictures.doc
24SSLCertificatefa3d5d670dc1d153b999c3aec7b1d815cc33c4dc
25SSLCertificateb11aa089879cd7d4503285fa8623ec237a317aee
26SSLCertificate07317545c8d6fc9beedd3dd695ba79dd3818b941
27SSLCertificate3c0ecb46d65dd57c33df5f6547f8fffb3e15722d
28SSLCertificate1c43ed17acc07680924f2ec476d281c8c5fd6b4a
29SSLCertificate8968f439ef26f3fcded4387a67ea5f56ce24a003
30IPv4Address206.221.181.253
31IPv4Address66.55.152.164
32IPv4Address68.232.180.122
33IPv4Address173.244.173.11
34IPv4Address173.244.173.12
35IPv4Address173.244.173.13
36IPv4Address209.190.20.149
37IPv4Address209.190.20.59
38IPv4Address209.190.20.62
39IPv4Address209.51.199.116
40IPv4Address38.130.75.20
41IPv4Address185.92.73.194
42IPv4Address144.168.45.126
43IPv4Address198.55.107.164
44IPv4Address104.200.128.126
45IPv4Address104.200.128.161
46IPv4Address104.200.128.173
47IPv4Address104.200.128.183
48IPv4Address104.200.128.184
49IPv4Address104.200.128.185
50IPv4Address104.200.128.187
51IPv4Address104.200.128.195
52IPv4Address104.200.128.196
53IPv4Address104.200.128.198
54IPv4Address104.200.128.205
55IPv4Address104.200.128.206
56IPv4Address104.200.128.208
57IPv4Address104.200.128.209
58IPv4Address104.200.128.48
59IPv4Address104.200.128.58
60IPv4Address104.200.128.64
61IPv4Address104.200.128.71
62IPv4Address107.181.160.138
63IPv4Address107.181.160.178
64IPv4Address107.181.160.194
65IPv4Address107.181.160.195
66IPv4Address107.181.161.141
67IPv4Address107.181.174.21
68IPv4Address107.181.174.228
69IPv4Address107.181.174.232
70IPv4Address107.181.174.241
71IPv4Address188.120.224.198
72IPv4Address188.120.228.172
73IPv4Address188.120.242.93
74IPv4Address188.120.243.11
75IPv4Address188.120.247.151
76IPv4Address62.109.2.52
77IPv4Address188.120.232.157
78IPv4Address185.118.65.230
79IPv4Address185.118.66.114
80IPv4Address141.105.67.58
81IPv4Address141.105.68.25
82IPv4Address141.105.68.26
83IPv4Address141.105.68.29
84IPv4Address141.105.69.69
85IPv4Address141.105.69.70
86IPv4Address141.105.69.77
87IPv4Address31.192.105.16
88IPv4Address31.192.105.17
89IPv4Address31.192.105.28
90IPv4Address146.0.73.109
91IPv4Address146.0.73.110
92IPv4Address146.0.73.111
93IPv4Address146.0.73.112
94IPv4Address146.0.73.114
95IPv4Address217.12.201.240
96IPv4Address217.12.218.242
97IPv4Address5.34.180.252
98IPv4Address5.34.181.13
99IPv4Address86.105.18.5
100IPv4Address93.190.138.137
101IPv4Address212.199.61.51
102IPv4Address80.179.42.37
103IPv4Address80.179.42.44
104IPv4Address176.31.18.29
105IPv4Address188.165.69.39
106IPv4Address51.254.76.54
107IPv4Address158.69.150.163
108IPv4Address192.99.242.212
109IPv4Address198.50.214.62
110Hasha60a32f21ac1a2ec33135a650aa8dc71
111Hash94ba33696cd6ffd6335948a752ec9c19
112Hashbcae706c00e07936fc41ac47d671fc40
113Hash1ca03f92f71d5ecb5dbf71b14d48495c
114Hash506415ef517b4b1f7679b3664ad399e1
115Hash1ca03f92f71d5ecb5dbf71b14d48495c
116Hashbd38cab32b3b8b64e5d5d3df36f7c55a
117Hashac29659dc10b2811372c83675ff57d23
118Hash41466bbb49dd35f9aa3002e546da65eb
119Hash8f6f7416cfdf8d500d6c3dcb33c4f4c9e1cd33998c957fea77fbd50471faec88
120Hash02f2c896287bc6a71275e8ebe311630557800081862a56a3c22c143f2f3142bd
121Hash2df6fe9812796605d4696773c91ad84c4c315df7df9cf78bee5864822b1074c9
122Hash55f513d0d8e1fd41b1417a0eb2afff3a039a9529571196dd7882d1251ab1f9bc
123Hashda529e0b81625828d52cd70efba50794
124Hash1f9910cafe0e5f39887b2d5ab4df0d10
125Hash0feb0b50b99f0b303a5081ffb3c4446d
126Hash577577d6df1833629bfd0d612e3dbb05
127Hash165f8db9c6e2ca79260b159b4618a496e1ed6730d800798d51d38f07b3653952
128Hash1f867be812087722010f12028beeaf376043e5d7
129Hashb571c8e0e3768a12794eaf0ce24e6697
130Hashe319f3fb40957a5ff13695306dd9de25
131Hashacf24620e544f79e55fd8ae6022e040257b60b33cf474c37f2877c39fbf2308a
132Hash8c8496390c3ad048f2a0a4031edfcdac819ee840d32951b9a1a9337a2dcbea25
133Hashc5a02e984ca3d5ac13cf946d2ba68364
134Hashefca6664ad6d29d2df5aaecf99024892
135Hashbff115d5fb4fd8a395d158fb18175d1d183c8869d54624c706ee48a1180b2361
136Hashafa563221aac89f96c383f9f9f4ef81d82c69419f124a80b7f4a8c437d83ce77
137Hash4a3d93c0a74aaabeb801593741587a02
138Hash64c9acc611ef47486ea756aca8e1b3b7
139Hashfb775e900872e01f65e606b722719594
140Hashcf8502b8b67d11fbb0c75ebcf741db15
141Hash4999967c94a2fb1fa8122f1eea7a0e02
142Hash5fe0e156a308b48fb2f9577ed3e3b09768976fdd99f6b2d2db5658b138676902
143Hash37449ddfc120c08e0c0d41561db79e8cbbb97238
144Hash4442c48dd314a04ba4df046dfe43c9ea1d229ef8814e4d3195afa9624682d763
145Hash7651f0d886e1c1054eb716352468ec6aedab06ed61e1eebd02bca4efbb974fb6
146Hasheb01202563dc0a1a3b39852ccda012acfe0b6f4d
147Hash7e3c9323be2898d92666df33eb6e73a46c28e8e34630a2bd1db96aeb39586aeb
148Hash9e5ab438deb327e26266c27891b3573c302113b8d239abc7f9aaa7eff9c4f7bb
149Hash6a19624d80a54c4931490562b94775b74724f200
150Hash32860b0184676509241bbaf9233068d472472c3d9c93570fc072e1acea97a1d4
151Hashb34721e53599286a1093c90a9dd0b789
152Hash7ad65e39b79ad56c02a90dfab8090392ec5ffed10a8e276b86ec9b1f2524ad31
153Hash59c448abaa6cd20ce7af33d6c0ae27e4a853d2bd
154Hashfb775e900872e01f65e606b722719594
155Hash871efc9ecd8a446a7aa06351604a9bf4
156Hashcf8502b8b67d11fbb0c75ebcf741db15
157Hasha4dd1c225292014e65edb83f2684f2d5
158Hash838fb8d181d52e9b9d212b49f4350739
159Hashe37418ba399a095066845e7829267efe
160Hash1072b82f53fdd9fa944685c7e498eece89b6b4240073f654495ac76e303e65c9
161Hash752240cddda5acb5e8d026cef82e2b54
162Hash435a93978fa50f55a64c788002da58a5
163Hash3de91d07ac762b193d5b67dd5138381a
164Hasha4adbea4fcbb242f7eac48ddbf13c814d5eec9220f7dce01b2cc8b56a806cd37
165Hashaba7771c42aea8048e4067809c786b0105e9dfaa
166Hashb01e955a34da8698fae11bf17e3f79a054449f938257284155aeca9a2d3815dd
167Hash3676914af9fd575deb9901a8b625f032
168Hashf1607a5b918345f89e3c2887c6dafc05c5832593
169Hash341c920ec47efa4fd1bfcd1859a7fb98945f9d85
170Hash8b702ba2b2bd65c3ad47117515f0669c
171Hash6ea02f1f13cc39d953e5a3ebcdcfd882
172Hash8f77a9cc2ad32af6fb1865fdff82ad89
173Hash62f8f45c5f10647af0040f965a3ea96d
174Hashd9aa197ca2f01a66df248c7a8b582c40
175Hash217b1c2760bcf4838f5e3efb980064d7
176Hashcfb4be91d8546203ae602c0284126408
177Hash16a711a8fa5a40ee787e41c2c65faf9a78b195307ac069c5e13ba18bce243d01
178Hash5e65373a7c6abca7e3f75ce74c6e8143
179Hashd3b9da7c8c54f7f1ea6433ac34b120a1
180Hash32261fe44c368724593fbf65d47fc826
181Hashd2c117d18cb05140373713859803a0d6
182Hash113ca319e85778b62145019359380a08
183Hash4999967c94a2fb1fa8122f1eea7a0e02
184Hash9846b07bf7265161573392d24543940e
185Hashbf23ce4ae7d5c774b1fa6becd6864b3b
186Hash720203904c9eaf45ff767425a8c518cd
187Hash62652f074924bb961d74099bc7b95731
188Hash1fba1876c88203a2ae6a59ce0b5da2a1
189Hashcf8502b8b67d11fbb0c75ebcf741db15
190Hashfb775e900872e01f65e606b722719594
191Hash73f14f320facbdd29ae6f0628fa6f198dc86ba3428b3eddbfc39cf36224cebb9
192Hash3d2885edf1f70ce4eb1e9519f47a669f
193Filenameconfig.exe
194FilenameStrike.doc
195Filenamemalware.doc
196FilenamePDFOPENER_CONSOLE.exe
197FilenameMa_1.tmp
198FilenameWextract
199FilenameThe%20United%20Nations%20Counter.doc.docx
200Filenamenetsrvs.exe
201FilenameDate.dotm
202Filenamessl.docx
203Filenameo040t.exe
204Filenamem8f7s.exe
205Filenamed5tjo.exe
206FilenameLogManager.tmp
207Filenameedg1CF5.tmp
208Filenamentuser.swp
209Filenamesvchost64.swp
210Filenamentuser.dat.swp
211Filename455aa96e-804g-4bcf-bcf8-f400b3a9cfe9.PackageExtraction
212FilenameSvchost32.swp
213FilenameSvchost64.swp
214Filenameupdate5x.dll
215Filename22092014_ver621.dll<6C><6C><A0><A0><A0>
216Filenamenetsrv.exe
217Filenamenetsrva.exe
218Filenamenetsrvd.exe
219Filenamenetsrvs.exe
220Filenamevminst.tmp
221Filenametdtess.exe
222Filenametest_oracle.xls
223Filenameur96r.exe
224FilenameThe North Korean weapons program now testing USA range.docx
225FilenameF123321.exe
226FilenameISIS terrorizes jewish people.docx
227Domainwethearservice.com
228Domainmywindows24.in
229Domainmicrosoft-office.solutions
230Domaincode.jguery.net
231Domain1m100.tech
232Domaincloudflare-statics.com
233Domaincachevideo.com
234Domainwinfeedback.net
235Domainterendmicro.com
236Domainalkamaihd.com
237Domainmsv-updates.gsvr-static.co
238Domainfbstatic-a.space
239Domainbroadcast-microsoft.tech
240Domainsharepoint-microsoft.co
241Domainnewsfeeds-microsoft.press
242Domainowa-microsoft.online
243Domaindigicert.online
244Domaincloudflare-analyse.com
245Domainisraelnewsagency.link
246Domainakamaitechnology.tech
247Domainwinupdate64.org
248Domainads-youtube.net
249Domaincortana-search.com
250Domainnsserver.host
251Domainnameserver.win
252Domainsymcd.xyz
253Domainfdgdsg.xyz
254Domaindnsserv.host
255Domainwinupdate64.com
256Domainssl-gstatic.online
257Domainupdatedrivers.org
258Domainalkamaihd.net
259Domainupdate.microsoft-office.solutions
260Domainjavaupdate.co
261Domainoutlook360.org
262Domainwinupdate64.net
263Domaintrendmicro.tech
264Domainqoldenlines.net
265Domainwindefender.org
266Domain1e100.tech
267Domainchromeupdates.online
268Domainads-youtube.online
269Domainakamaitechnology.com
270Domaincloudmicrosoft.net
271Domainjs.jguery.online
272Domainazurewebsites.tech
273Domainelasticbeanstalk.tech
274Domainjguery.online
275Domainmicrosoft-security.host
276Domainmicrosoft-ds.com
277Domainjguery.net
278Domainprimeminister-goverment-techcenter.tech
279Domainofficeapps-live.com
280Domainmicrosoft-tool.com
281Domaincissco.net
282Domainjs.jguery.net
283Domainf-tqn.com
284Domainjavaupdator.com
285Domainofficeapps-live.net
286Domainipresolver.org
287Domainintelchip.org
288Domainoutlook360.net
289Domainwindowkernel.com
290Domainwheatherserviceapi.info
291Domainwindowslayer.in
292Domainsdlc-esd-oracle.online
293Domainmpmicrosoft.com
294Domainofficeapps-live.org
295Domaincachevideo.online
296Domainwin-update.com
297Domainlabs-cloudfront.com
298Domainwindowskernel14.com
299Domainfbstatic-akamaihd.com
300Domainmcafee-analyzer.com
301Domaincloud-analyzer.com
302Domainfb-statics.com
303Domainynet.link
304Domaintwiter-statics.info
305Domaindiagnose.microsoft-office.solutions
306Domainmswordupdate17.com
307Domaingsvr-static.co
308Domainnews-bbc.press
309Domainmandalasanati.info
310Domainoffice-msupdate.solutions
311Domainwindows-updates.solutions
312Domainakamai-net.network
313Domainazureedge-net.services
314Domaindoucbleclick.tech
315Domainwindows-updates.services
316Domainwindows-updates.network
317Domaincloudfront.site
318Domainnetcdn-cachefly.network
319Domainakamaized.online
320Domaincdninstagram.center
321Domaingooglusercontent.center
322DNSNameea-in-f354.1e100.ads-youtube.net
323DNSNamens1.ynet.link
324DNSNamens2.ynet.link
325DNSNamestatic.dyn-usr.g-blc-se.d45.a63.akamai.be-5-0-ibr01-lts-ntwk-msn.alkamaihd.com
326DNSNamepht.is.nlb-deploy.edge-dyn.e11.f20.ads-youtube.online
327DNSNamens1.winfeedback.net
328DNSNamens2.winfeedback.net
329DNSNamemsupdate.diagnose.microsoft-office.solutions
330DNSNamewww.alkamaihd.net
331DNSNamec20.jdk.cdn-external-ie.1e100.alkamaihd.net
332DNSNamens2.img.twiter-statics.info
333DNSNameapi.img.twiter-statics.info
334DNSNamens1.img.twiter-statics.info
335DNSNamens1.officeapps-live.net
336DNSNamens1.wheatherserviceapi.info
337DNSNamens2.microsoft-tool.com
338DNSNamens2.f-tqn.com
339DNSNamecarl.ns.cloudflare.com.sdlc-esd-oracle.online
340DNSNamens1.cortana-search.com
341DNSName40.dc.c0ad.ip4.dyn.gsvr-static.co
342DNSName40.dc.c2ad.ip4.dyn.gsvr-static.co
343DNSNamens2.winupdate64.org
344DNSNamens1.f-tqn.com
345DNSNamens2.cortana-search.com
346DNSNamens1.symcd.xyz
347DNSNamens2.symcd.xyz
348DNSNamens1.winupdate64.org
349DNSNamens1.microsoft-tool.com
350DNSNamens2.officeapps-live.com
351DNSNamens1.israelnewsagency.link
352DNSNamens2.israelnewsagency.link
353DNSNamens1.cissco.net
354DNSNamens2.cissco.net
355DNSNamens1.cachevideo.online
356DNSNamens2.cachevideo.online
357DNSNamewww.static.dyn-usr.g-blc-se.d45.a63.akamai.alkamaihd.com
358DNSNamestatic.dyn-usr.g-blc-se.d45.a63.akamai.www.alkamaihd.com
359DNSNamedhb.stage.12735072.40.dc.c0ad.ip4.sta.gsvr-static.co
360DNSNamemain.windowskernel14.com
361DNSNamewww.winupdate64.net
362DNSNameae13-0-hk2-96cbe-1a-ntwk-msn.static.dyn-usr.g-blc-se.d45.a63.akamai.alkamaihd.com
363DNSNamebe-5-0-ibr01-lts-ntwk-msn.static.dyn-usr.g-blc-se.d45.a63.akamai.alkamaihd.com
364DNSNamestatic.dyn-usr.g-blc-se.d45.a63.akamai.static.dyn-usr.g-blc-se.d45.a63.akamai.alkamaihd.com
365DNSNamecyb.stage.12735072.40.dc.c0ad.ip4.sta.gsvr-static.co
366DNSNamens1.winupdate64.com
367DNSNamens1.twiter-statics.info
368DNSName40.dc.c0ad.ip4.dyn.gsvr-static.co
369DNSNameupdate.microsoft-office.solutions
370DNSNamewk-in-f104.1e100.n.microsoft.qoldenlines.net
371DNSNamens1.fb-statics.com
372DNSNamens2.fb-statics.com
373DNSNameis-cdn.edge.g18.dyn.usr-e12-as.akamaitechnology
374DNSNameimg.gmailtagmanager.com
375DNSNamewk-in-f104.1c100.n.microsoft-security.host
376DNSNamemsnbot-sd7-46-cdn.microsoft-security.host
377DNSNamemsnbot-sd7-46-img.microsoft-security.host
378DNSNamens2.winupdate64.com
379DNSNamemsnbot-sd7-46-194.microsoft-security.host
380DNSNameea-in-f155.1e100.microsoft-security.host
381DNSNamemsnbot-207-46-194.microsoft-security.host
382DNSNameimg.twiter-statics.info
383DNSNamemsnbot-sd7-46-cdn.microsoft-security.host
384DNSNamens2.wheatherserviceapi.info
385DNSNamens1.windowkernel.com
386DNSNamens2.windowkernel.com
387DNSNamens2.fbstatic-a.space
388DNSNamens1.fbstatic-a.space
389DNSNameapi.TwitEr-Statics.info
390DNSNamens2.mcafee-analyzer.com
391DNSName21666.mpmicrosoft.com
392DNSName22830.officeapps-live.org
393DNSName15236.mcafee-analyzer.com
394DNSNamens2.static.dyn-usr.gsrv02.ssl-gstatic.online
395DNSNamens1.mcafee-analyzer.com
396DNSNamens1.fbstatic-akamaihd.com
397DNSNamens1.static.dyn-usr.gsrv01.ssl-gstatic.online
398DNSNamens2.officeapps-live.org
399DNSNamewk-in-f104.1e100.n.microsoft-security.host
400DNSNamens1.mpmicrosoft.com
401DNSNamewww.microsoft-security.host
402DNSNamens2.fbstatic-akamaihd.com
403DNSNamens1.cachevideo.online
404DNSNamewk-in-f100.1e100.n.microsoft-security.host
405DNSNamens1.officeapps-live.org
406DNSNamens2.mpmicrosoft.com
407DNSNamens02.nsserver.host
408DNSNamens2.cachevideo.online
409DNSNamebe-5-0-ibr01-lts-ntwk-msn.alkamaihd.com
410DNSNamestatic.dyn-usr.g-blc-se.d45.a63.akamai.alkamaihd.com
411DNSNamewww.alkamaihd.com
412DNSNameae13-0-hk2-96cbe-1a-ntwk-msn.alkamaihd.com
413DNSNamens2.microsoft-ds.com
414DNSNameadcenter.microsoft-ds.com
415DNSNamens1.microsoft-ds.com
416DNSNamens1.mswordupdate17.com
417DNSNamens2.mswordupdate17.com
418DNSNamec.mswordupdate17.com
419DNSNamens1.cloudflare-analyse.com
420DNSNamestatic.dyn-usr.f-loginme.c19.a23.akamaitechnology.com
421DNSNamens2.cloudflare-analyse.com
422DNSNamens1.cloud-analyzer.com
423DNSNamens2.cloud-analyzer.com
424DNSNamens01.nsserver.host
425DNSNamens1.fb-statics.com
426DNSNamens02.dnsserv.host
427DNSName15236.cachevideo.online
428DNSNamens2.fb-statics.com
429DNSNamens2.twiter-statics.info
430DNSNameea-in-f113.1e100.microsoft-security.host
431DNSNamestatic.dyn-usr.f-login-me.c19.a.akamaitechnology.tech
432DNSNameea-in-f155.1e100.microsoft-security.host
433DNSNamefloat.2963.bm-imp.akamaitechnology.tech
434DNSNamens1.mcafee-analyzer.com
435DNSNamens2.mcafee-analyzer.com
436DNSNamens1.mpmicrosoft.com
437DNSNamens2.mpmicrosoft.com
438DNSNamejpsrv-java-jdkec1.javaupdate.co
439DNSNamemicrosoft-active.directory_update-change-policy.primeminister-goverment-techcenter.tech
440DNSNamejpsrv-java-jdkec3.javaupdate.co
441DNSNamenameserver02.javaupdate.co
442DNSNamejpsrv-java-jdkec2.javaupdate.co
443DNSNamestatic.dyn-usr.f-login-me.c19.a23.akamaitechnology.com
444DNSNamestatic.dyn-usr.g-blc-se.d45.a63.alkamaihd.net
445DNSNamessl.pmo.gov.il-dana-naauthurl1-welcome.cgi.primeminister-goverment-techcenter.tech
446DNSNamens1.static.dyn-usr.gsrv01.ssl- gstatic.online
447DNSNamens2.static.dyn-usr.gsrv02.ssl- gstatic.online
448DNSNamestatic.primeminister-goverment-techcenter.tech
449DNSNamens1.outlook360.org
450DNSNamed45.a63.alkamaihd.net
451DNSNamens1.officeapps-live.org
452DNSNamens2.outlook360.org
453DNSNamens2.officeapps-live.org
454DNSNamens2.win-update.com
455DNSNameaaa.stage.14043411.email.sharepoint-microsoft.co
456DNSNamens1.updatedrivers.org
457DNSNamea17-h16.g11.iad17.as.pht-external.c15.qoldenlines.net
458DNSNamens1.windefender.org
459DNSNameis-cdn.edge.g18.dyn.usr-e12-as.akamaitechnology.com
460DNSNamens2.windefender.org
461DNSNamens1.win-update.com
462DNSNamens2.updatedrivers.org
463DNSNamens1.mpmicrosoft.com
464DNSNamens1.officeapps-live.org
465DNSNamens2.officeapps-live.org
466DNSNamens2.ipresolver.org
467DNSNamens1.ipresolver.org
468DNSNamewww.is-cdn.edge.g18.dyn.usr-e12-as.akamaitechnology.com
469DNSName11716.cachevideo.com
470DNSNamens1.intelchip.org
471DNSNamens2.cachevideo.com
472DNSName7737.cloudflare-statics.com
473DNSName7052.cloudflare-statics.com
474DNSName7737.digicert.online
475DNSNamens1.cloudflare-statics.com
476DNSName24984.cachevideo.com
477DNSNamens1.digicert.online
478DNSNamens2.digicert.online
479DNSName24984.digicert.online
480DNSNamens1.fbstatic-akamaihd.com
481DNSNamens2.fbstatic-akamaihd.com
482DNSNamens1.javaupdator.com
483DNSNamens2.outlook360.net
484DNSNamens01.nameserver.win
485DNSNamens2.javaupdator.com
486DNSNamens2.intelchip.org
487DNSNameTATIC.DYN-USR.GSRV01.SSL-GSTATIC.ONLINe
488DNSNameSTATIC.DYN-USR.GSRV01.SSL-GSTATIC.online
489DNSNamens1.labs-cloudfront.com
490DNSNamens2.labs-cloudfront.com
491DNSNamewww.broadcast-microsoft.tech
492DNSNamewww.newsfeeds-microsoft.press
493DNSNamewww.owa-microsoft.online
494DNSNamestatic.c20.jdk.cdn-external-ie.1e100.tech
495DNSNamens1.cloud-analyzer.com
496DNSNamens2.cloud-analyzer.com
497DNSNamens2.cloudflare-statics.com
498DNSNamens1.cachevideo.com
499DNSNamens1.outlook360.net
500DNSName3012.digicert.online
501DNSName24984.cloudflare-statics.com
502DNSName7737.cachevideo.com
503DNSNamehda.stage.12735072.40.dc.c0ad.ip4.sta.gsvr-static.co
504DNSNamemsdn.winupdate64.net
505DNSNamekja.stage.12735072.40.dc.c0ad.ip4.sta.gsvr-static.co
506Detection nameBKDR_COBEACON.A
507Detection nameTROJ_POWPICK.A
508Detection nameHKTL_PASSDUMP
509Detection nameTROJ_SODREVR.A
510Detection nameTROJ_POWSHELL.C
511Detection nameBKDR_CONBEA.A
512Detection nameTSPY64_REKOTIB.A
513Detection nameHKTL_DIRZIP
514Detection nameTROJ_WAPPOME.A