cyber_threat_intelligence/actors/Mexico Unknown
2024-01-26 07:53:33 +01:00
..
README.md Update January 2024 2024-01-26 07:53:33 +01:00

Mexico Unknown - Cyber Threat Intelligence

These indicators were reported, collected, and generated during the VulDB CTI analysis of the actor known as Mexico Unknown. The activity monitoring correlates data from social media, forums, chat rooms, and darknet markets. It helps to determine associated actors, specific activities, expected intentions, emerging research, and ongoing attacks. Our unique predictive model uses big data to forecast activities and their characteristics.

Live data and more analysis capabilities are available at https://vuldb.com/?actor.mexico_unknown

Countries

These countries are directly (e.g. origin of attacks) or indirectly (e.g. access by proxy) associated with Mexico Unknown:

There are 16 more country items available. Please use our online service to access the data.

IOC - Indicator of Compromise

These indicators of compromise (IOC) indicate associated network resources which are known to be part of research and attack activities of Mexico Unknown.

ID IP address Hostname Campaign Confidence
1 4.1.180.0 - - High
2 4.1.220.126 - - High
3 4.14.129.26 HUTCHINSON.ear1.Dallas1.Level3.net - High
4 4.18.66.0 - - High
5 5.8.44.0 subnet.reserved.ispsystem.net - High
6 5.105.231.0 5-105-231-0.flemservices.com - High
7 5.105.237.0 5-105-237-0.flemservices.com - High
8 5.181.169.0 - - High
9 5.255.147.104 - - High
10 8.14.224.0 - - High
11 8.33.234.0 - - High
12 8.46.113.0 - - High
13 8.50.0.0 - - High
14 8.50.4.0 - - High
15 8.50.7.0 - - High
16 8.50.8.0 - - High
17 8.50.10.0 - - High
18 8.50.12.0 - - High
19 8.50.16.0 - - High
20 8.241.220.0 - - High
21 8.241.223.0 - - High
22 8.241.246.0 - - High
23 8.242.70.20 - - High
24 8.242.70.72 - - High
25 8.242.70.76 - - High
26 8.242.70.96 - - High
27 8.242.70.100 - - High
28 8.242.70.148 - - High
29 8.242.70.232 - - High
30 8.242.192.0 - - High
31 8.243.208.0 - - High
32 8.243.212.0 - - High
33 8.243.215.0 - - High
34 8.243.216.0 - - High
35 8.243.216.16 - - High
36 8.243.216.22 - - High
37 8.243.216.24 - - High
38 8.243.216.32 - - High
39 8.243.216.48 - - High
40 8.243.216.56 - - High
41 8.243.216.62 - - High
42 8.243.216.64 - - High
43 8.243.216.128 - - High
44 8.243.216.138 - - High
45 8.243.216.140 - - High
46 8.243.216.146 - - High
47 8.243.216.148 - - High
48 8.243.216.152 - - High
49 8.243.216.160 - - High
50 8.243.216.192 - - High
51 8.243.217.0 - - High
52 8.243.218.0 - - High
53 8.243.220.0 - - High
54 12.28.7.0 - - High
55 13.104.141.24 - - High
56 13.104.141.156 - - High
57 13.104.183.192 - - High
58 13.104.187.80 - - High
59 13.105.154.0 - - High
60 13.107.218.32 - - High
61 13.248.124.0 - - High
62 13.248.124.128 - - High
63 17.43.41.0 - - High
64 17.43.41.128 - - High
65 17.45.56.0 - - High
66 17.45.80.0 - - High
67 17.45.170.113 - - High
68 17.50.48.0 - - High
69 17.50.72.0 - - High
70 20.60.96.0 - - High
71 20.143.30.0 - - High
72 20.152.12.0 - - High
73 20.157.204.0 - - High
74 20.157.241.0 - - High
75 23.3.12.0 a23-3-12-0.deploy.static.akamaitechnologies.com - High
76 23.3.80.0 a23-3-80-0.deploy.static.akamaitechnologies.com - High
77 23.3.138.0 a23-3-138-0.deploy.static.akamaitechnologies.com - High
78 23.3.140.0 a23-3-140-0.deploy.static.akamaitechnologies.com - High
79 23.3.176.0 a23-3-176-0.deploy.static.akamaitechnologies.com - High
80 23.3.192.0 a23-3-192-0.deploy.static.akamaitechnologies.com - High
81 23.4.128.0 a23-4-128-0.deploy.static.akamaitechnologies.com - High
82 23.4.254.0 a23-4-254-0.deploy.static.akamaitechnologies.com - High
83 23.8.32.0 a23-8-32-0.deploy.static.akamaitechnologies.com - High
84 23.13.16.0 a23-13-16-0.deploy.static.akamaitechnologies.com - High
85 23.15.112.0 a23-15-112-0.deploy.static.akamaitechnologies.com - High
86 23.15.160.0 a23-15-160-0.deploy.static.akamaitechnologies.com - High
87 23.32.148.0 lo0.r01.border.mex01.sdn.netarch.akamai.com - High
88 23.33.60.0 a23-33-60-0.deploy.static.akamaitechnologies.com - High
89 23.33.104.0 a23-33-104-0.deploy.static.akamaitechnologies.com - High
90 23.33.128.0 a23-33-128-0.deploy.static.akamaitechnologies.com - High
91 23.33.224.0 a23-33-224-0.deploy.static.akamaitechnologies.com - High
92 23.34.80.0 a23-34-80-0.deploy.static.akamaitechnologies.com - High
93 23.34.168.0 a23-34-168-0.deploy.static.akamaitechnologies.com - High
94 23.34.173.0 a23-34-173-0.deploy.static.akamaitechnologies.com - High
95 23.34.174.0 a23-34-174-0.deploy.static.akamaitechnologies.com - High
96 23.34.246.0 a23-34-246-0.deploy.static.akamaitechnologies.com - High
97 23.36.16.0 a23-36-16-0.deploy.static.akamaitechnologies.com - High
98 23.36.216.0 a23-36-216-0.deploy.static.akamaitechnologies.com - High
99 23.40.80.0 a23-40-80-0.deploy.static.akamaitechnologies.com - High
100 23.40.144.0 a23-40-144-0.deploy.static.akamaitechnologies.com - High
101 23.41.24.0 a23-41-24-0.deploy.static.akamaitechnologies.com - High
102 23.41.188.0 a23-41-188-0.deploy.static.akamaitechnologies.com - High
103 23.41.208.0 a23-41-208-0.deploy.static.akamaitechnologies.com - High
104 23.41.244.0 a23-41-244-0.deploy.static.akamaitechnologies.com - High
105 23.41.252.0 a23-41-252-0.deploy.static.akamaitechnologies.com - High
106 23.43.40.0 a23-43-40-0.deploy.static.akamaitechnologies.com - High
107 23.44.8.0 a23-44-8-0.deploy.static.akamaitechnologies.com - High
108 23.45.92.0 a23-45-92-0.deploy.static.akamaitechnologies.com - High
109 23.45.94.0 a23-45-94-0.deploy.static.akamaitechnologies.com - High
110 23.45.200.0 a23-45-200-0.deploy.static.akamaitechnologies.com - High
111 23.46.160.0 a23-46-160-0.deploy.static.akamaitechnologies.com - High
112 23.47.207.0 a23-47-207-0.deploy.static.akamaitechnologies.com - High
113 23.49.32.0 a23-49-32-0.deploy.static.akamaitechnologies.com - High
114 23.51.212.0 a23-51-212-0.deploy.static.akamaitechnologies.com - High
115 23.52.2.0 a23-52-2-0.deploy.static.akamaitechnologies.com - High
116 23.52.139.0 a23-52-139-0.deploy.static.akamaitechnologies.com - High
117 23.54.126.0 a23-54-126-0.deploy.static.akamaitechnologies.com - High
118 23.54.224.0 a23-54-224-0.deploy.static.akamaitechnologies.com - High
119 23.55.136.0 a23-55-136-0.deploy.static.akamaitechnologies.com - High
120 23.55.140.0 a23-55-140-0.deploy.static.akamaitechnologies.com - High
121 23.55.176.0 a23-55-176-0.deploy.static.akamaitechnologies.com - High
122 23.59.32.0 a23-59-32-0.deploy.static.akamaitechnologies.com - High
123 23.59.181.0 a23-59-181-0.deploy.static.akamaitechnologies.com - High
124 23.62.48.0 a23-62-48-0.deploy.static.akamaitechnologies.com - High
125 23.64.121.0 a23-64-121-0.deploy.static.akamaitechnologies.com - High
126 23.65.126.0 a23-65-126-0.deploy.static.akamaitechnologies.com - High
127 23.65.144.0 a23-65-144-0.deploy.static.akamaitechnologies.com - High
128 23.65.160.0 a23-65-160-0.deploy.static.akamaitechnologies.com - High
129 23.65.176.0 a23-65-176-0.deploy.static.akamaitechnologies.com - High
130 23.74.96.0 a23-74-96-0.deploy.static.akamaitechnologies.com - High
131 23.75.32.0 a23-75-32-0.deploy.static.akamaitechnologies.com - High
132 23.75.218.0 a23-75-218-0.deploy.static.akamaitechnologies.com - High
133 23.75.220.0 a23-75-220-0.deploy.static.akamaitechnologies.com - High
134 23.76.0.0 a23-76-0-0.deploy.static.akamaitechnologies.com - High
135 23.76.100.0 a23-76-100-0.deploy.static.akamaitechnologies.com - High
136 23.76.112.0 a23-76-112-0.deploy.static.akamaitechnologies.com - High
137 23.76.128.0 a23-76-128-0.deploy.static.akamaitechnologies.com - High
138 23.138.184.0 - - High
139 23.147.112.0 - - High
140 23.192.145.0 a23-192-145-0.deploy.static.akamaitechnologies.com - High
141 23.192.148.0 a23-192-148-0.deploy.static.akamaitechnologies.com - High
142 23.192.161.0 a23-192-161-0.deploy.static.akamaitechnologies.com - High
143 23.192.188.0 a23-192-188-0.deploy.static.akamaitechnologies.com - High
144 23.193.28.0 a23-193-28-0.deploy.static.akamaitechnologies.com - High
145 23.193.164.0 a23-193-164-0.deploy.static.akamaitechnologies.com - High
146 23.193.172.0 a23-193-172-0.deploy.static.akamaitechnologies.com - High
147 23.193.172.62 a23-193-172-62.deploy.static.akamaitechnologies.com - High
148 23.193.172.68 a23-193-172-68.deploy.static.akamaitechnologies.com - High
149 23.193.172.76 a23-193-172-76.deploy.static.akamaitechnologies.com - High
150 23.193.172.84 a23-193-172-84.deploy.static.akamaitechnologies.com - High
151 23.193.172.92 a23-193-172-92.deploy.static.akamaitechnologies.com - High
152 23.193.172.100 a23-193-172-100.deploy.static.akamaitechnologies.com - High
153 23.193.172.108 a23-193-172-108.deploy.static.akamaitechnologies.com - High
154 23.193.172.116 a23-193-172-116.deploy.static.akamaitechnologies.com - High
155 23.193.208.0 a23-193-208-0.deploy.static.akamaitechnologies.com - High
156 23.193.224.0 a23-193-224-0.deploy.static.akamaitechnologies.com - High
157 23.194.202.0 a23-194-202-0.deploy.static.akamaitechnologies.com - High
158 23.194.208.0 a23-194-208-0.deploy.static.akamaitechnologies.com - High
159 23.194.218.0 a23-194-218-0.deploy.static.akamaitechnologies.com - High
160 23.195.124.0 a23-195-124-0.deploy.static.akamaitechnologies.com - High
161 23.200.26.0 lo0.r01.border.qro01.sdn.netarch.akamai.com - High
162 23.200.36.0 a23-200-36-0.deploy.static.akamaitechnologies.com - High
163 23.200.40.0 a23-200-40-0.deploy.static.akamaitechnologies.com - High
164 23.201.199.0 a23-201-199-0.deploy.static.akamaitechnologies.com - High
165 23.203.60.0 a23-203-60-0.deploy.static.akamaitechnologies.com - High
166 23.204.68.0 a23-204-68-0.deploy.static.akamaitechnologies.com - High
167 23.204.128.0 a23-204-128-0.deploy.static.akamaitechnologies.com - High
168 23.205.36.0 a23-205-36-0.deploy.static.akamaitechnologies.com - High
169 23.205.148.0 a23-205-148-0.deploy.static.akamaitechnologies.com - High
170 23.206.48.0 a23-206-48-0.deploy.static.akamaitechnologies.com - High
171 23.206.64.0 a23-206-64-0.deploy.static.akamaitechnologies.com - High
172 23.208.96.0 a23-208-96-0.deploy.static.akamaitechnologies.com - High
173 23.209.224.0 a23-209-224-0.deploy.static.akamaitechnologies.com - High
174 23.211.126.0 a23-211-126-0.deploy.static.akamaitechnologies.com - High
175 23.212.5.76 a23-212-5-76.deploy.static.akamaitechnologies.com - High
176 23.212.5.84 a23-212-5-84.deploy.static.akamaitechnologies.com - High
177 23.212.5.92 a23-212-5-92.deploy.static.akamaitechnologies.com - High
178 23.212.88.0 a23-212-88-0.deploy.static.akamaitechnologies.com - High
179 23.212.174.0 a23-212-174-0.deploy.static.akamaitechnologies.com - High
180 23.212.236.0 a23-212-236-0.deploy.static.akamaitechnologies.com - High
181 23.213.27.0 a23-213-27-0.deploy.static.akamaitechnologies.com - High
182 23.213.28.0 a23-213-28-0.deploy.static.akamaitechnologies.com - High
183 23.213.179.0 a23-213-179-0.deploy.static.akamaitechnologies.com - High
184 23.216.134.0 a23-216-134-0.deploy.static.akamaitechnologies.com - High
185 23.216.136.0 a23-216-136-0.deploy.static.akamaitechnologies.com - High
186 23.216.196.0 a23-216-196-0.deploy.static.akamaitechnologies.com - High
187 23.216.200.0 a23-216-200-0.deploy.static.akamaitechnologies.com - High
188 23.216.208.0 a23-216-208-0.deploy.static.akamaitechnologies.com - High
189 23.216.224.0 a23-216-224-0.deploy.static.akamaitechnologies.com - High
190 23.217.64.0 a23-217-64-0.deploy.static.akamaitechnologies.com - High
191 23.217.118.0 a23-217-118-0.deploy.static.akamaitechnologies.com - High
192 23.217.120.0 a23-217-120-0.deploy.static.akamaitechnologies.com - High
193 23.217.192.0 a23-217-192-0.deploy.static.akamaitechnologies.com - High
194 23.218.84.0 a23-218-84-0.deploy.static.akamaitechnologies.com - High
195 23.219.153.0 a23-219-153-0.deploy.static.akamaitechnologies.com - High
196 23.219.166.0 a23-219-166-0.deploy.static.akamaitechnologies.com - High
197 23.222.252.0 a23-222-252-0.deploy.static.akamaitechnologies.com - High
198 23.223.41.0 a23-223-41-0.deploy.static.akamaitechnologies.com - High
199 23.223.232.0 a23-223-232-0.deploy.static.akamaitechnologies.com - High
200 23.226.40.0 - - High
201 23.247.135.0 - - High
202 23.251.104.0 - - High
203 24.239.167.0 - - High
204 31.13.89.0 - - High
205 31.14.72.0 - - High
206 31.187.93.64 - - High
207 31.210.20.0 - - High
208 32.59.8.0 - - High
209 32.59.32.0 - - High
210 32.59.40.0 - - High
211 32.59.48.0 - - High
212 32.59.80.0 - - High
213 32.59.82.0 - - High
214 32.59.85.0 - - High
215 32.59.86.0 - - High
216 32.59.92.0 - - High
217 32.59.192.0 - - High
218 32.64.168.32 - - High
219 32.105.41.0 - - High
220 32.105.42.0 - - High
221 32.105.45.0 - - High
222 32.105.46.0 - - High
223 32.109.8.0 - - High
224 32.115.12.0 - - High
225 32.115.128.0 - - High
226 32.115.140.0 - - High
227 32.115.160.0 - - High
228 32.115.178.0 - - High
229 32.120.10.0 - - High
230 32.231.41.0 - - High
231 32.231.42.0 - - High
232 32.231.45.0 - - High
233 32.231.46.0 - - High
234 32.231.64.0 - - High
235 32.231.200.0 - - High
236 32.231.224.0 - - High
237 34.99.100.0 0.100.99.34.bc.googleusercontent.com - Medium
238 34.99.104.0 0.104.99.34.bc.googleusercontent.com - Medium
239 34.99.118.0 0.118.99.34.bc.googleusercontent.com - Medium
240 34.99.120.0 0.120.99.34.bc.googleusercontent.com - Medium
241 34.99.127.0 0.127.99.34.bc.googleusercontent.com - Medium
242 34.103.80.0 0.80.103.34.bc.googleusercontent.com - Medium
243 35.59.32.0 - - High
244 35.59.32.98 - - High
245 37.16.91.0 - - High
246 37.72.141.0 - - High
247 37.140.155.0 - - High
248 37.140.159.0 37-140-159-0.spider.yandex.com - High
249 38.7.16.0 customer-38-7-16-0.gbic.mx - High
250 38.7.99.0 - - High
251 38.20.50.232 - - High
252 38.20.51.0 - - High
253 38.20.55.112 - - High
254 38.20.72.104 - - High
255 38.22.160.0 - - High
256 38.22.164.0 - - High
257 38.22.169.0 - - High
258 38.22.170.0 - - High
259 38.30.20.0 - - High
260 38.32.4.0 - - High
261 38.32.4.8 - - High
262 38.32.200.0 - - High
263 38.32.200.32 - - High
264 38.35.128.0 - - High
265 38.35.224.0 - - High
266 38.39.24.0 - - High
267 38.44.99.0 customer-38-44-99-0.redmax-tdt.mx - High
268 38.45.48.0 - - High
269 38.45.240.0 - - High
270 38.45.244.0 - - High
271 38.45.248.0 - - High
272 38.49.128.0 - - High
273 38.56.192.0 - - High
274 38.65.128.0 - - High
275 38.65.129.0 - - High
276 38.65.131.0 - - High
277 38.65.132.0 - - High
278 38.65.134.0 - - High
279 38.65.136.0 38-65-136-0.customer.ientc.net.mx - High
280 38.65.141.0 - - High
281 38.65.143.0 - - High
282 38.65.144.0 - - High
283 38.65.160.0 - - High
284 38.65.168.0 - - High
285 38.65.172.0 - - High
286 38.65.174.0 - - High
287 38.65.176.0 - - High
288 38.65.187.0 - - High
289 38.65.190.0 - - High
290 38.77.64.0 - - High
291 38.82.64.0 - - High
292 38.82.65.0 - - High
293 38.87.202.0 - - High
294 38.94.64.0 - - High
295 38.94.66.0 - - High
296 38.94.70.0 - - High
297 38.94.80.0 - - High
298 38.94.83.0 - - High
299 38.94.85.0 - - High
300 38.94.86.0 - - High
301 38.94.91.0 - - High
302 38.94.93.0 - - High
303 38.94.94.0 - - High
304 38.96.244.0 - - High
305 38.99.237.0 - - High
306 38.101.160.8 lo28408.rcr21.gdl01.atlas.cogentco.com - High
307 38.101.160.52 lo59077.rcr22.b014796-1.lax01.atlas.cogentco.com - High
308 38.101.160.96 lo22566.rcr21.mex01.atlas.cogentco.com - High
309 38.101.160.149 lo28419.rcr71.mty01.atlas.cogentco.com - High
310 38.101.161.58 lo22882.rcr21.mty01.atlas.cogentco.com - High
311 38.101.161.95 lo11172.rcr21.gdl01.atlas.cogentco.com - High
312 38.101.162.121 lo32098.rcr21.mex01.atlas.cogentco.com - High
313 38.101.162.170 lo13999.rcr21.gdl01.atlas.cogentco.com - High
314 38.101.163.186 lo200.rcr21.gdl01.atlas.cogentco.com - High
315 38.101.223.0 - - High
316 38.104.220.12 - - High
317 38.104.244.0 - - High
318 38.104.245.0 - - High
319 38.104.248.0 - - High
320 38.108.25.0 - - High
321 38.112.36.152 - - High
322 38.120.32.0 - - High
323 38.120.52.0 - - High
324 38.122.16.0 - - High
325 38.122.16.120 - - High
326 38.122.40.0 - - High
327 38.122.40.128 - - High
328 38.122.40.192 - - High
329 38.122.40.208 - - High
330 38.122.40.232 - - High
331 38.122.40.240 - - High
332 38.122.41.2 - - High
333 38.122.41.4 - - High
334 38.122.41.8 - - High
335 38.122.41.16 - - High
336 38.122.41.32 - - High
337 38.122.41.56 - - High
338 38.122.41.66 - - High
339 38.122.41.68 - - High
340 38.122.41.72 - - High
341 38.122.41.80 - - High
342 38.122.41.96 - - High
343 38.122.41.104 - - High
344 38.122.41.112 - - High
345 38.122.41.116 - - High
346 38.122.41.120 - - High
347 38.122.41.128 - - High
348 38.122.41.168 - - High
349 38.122.41.176 - - High
350 38.122.41.192 - - High
351 38.122.41.232 - - High
352 38.122.124.0 - - High
353 38.122.125.8 - - High
354 38.122.125.16 - - High
355 38.122.125.32 - - High
356 38.123.64.0 - - High
357 38.123.66.0 - - High
358 38.123.68.0 - - High
359 38.123.72.0 - - High
360 38.123.74.0 - - High
361 38.123.76.0 - - High
362 38.123.78.0 - - High
363 38.123.192.0 - - High
364 38.123.192.64 64dns.meganett.com.mx - High
365 38.123.194.128 - - High
366 38.123.196.0 - - High
367 38.123.200.0 - - High
368 38.123.201.0 - - High
369 38.123.202.0 - - High
370 38.123.204.0 - - High
371 38.123.205.0 - - High
372 38.123.208.0 - - High
373 38.123.216.0 - - High
374 38.124.168.0 - - High
375 38.124.169.0 - - High
376 38.124.171.0 - - High
377 38.124.172.0 - - High
378 38.124.174.0 - - High
379 38.124.192.0 interwii.net - High
380 38.124.200.0 - - High
381 38.124.204.0 - - High
382 38.124.206.0 - - High
383 38.126.236.80 ryyt80.nintentional.com - High
384 38.140.177.72 - - High
385 38.140.240.0 - - High
386 38.140.240.128 - - High
387 38.140.241.0 - - High
388 38.140.242.0 - - High
389 38.146.68.0 - - High
390 38.165.228.0 - - High
391 38.165.231.0 - - High
392 38.165.232.0 - - High
393 38.165.240.0 - - High
394 38.230.3.96 - - High
395 40.90.1.194 - - High
396 40.90.64.19 - - High
397 40.90.64.20 - - High
398 40.90.64.22 - - High
399 40.90.70.10 - - High
400 45.5.52.0 - - High
401 45.5.92.0 mva.nrtmexico.mx - High
402 45.6.60.0 - - High
403 45.6.140.0 - - High
404 45.7.28.0 45-7-28-0.ultravision.com.mx - High
405 45.7.44.0 45-7-44-0.teldiver.com - High
406 45.7.64.0 borde-la-arena.maysnet.com.mx - High
407 45.7.136.0 - - High
408 45.12.70.158 toying-maziest.alltieinc.com - High
409 45.12.71.158 - - High
410 45.15.211.0 - - High
411 45.65.92.0 - - High
412 45.65.152.0 - - High
413 45.67.98.0 45-67-98-0.hosted-by-worldstream.net - High
414 45.85.224.0 - - High
415 45.86.85.0 - - High
416 45.86.248.0 - - High
417 45.91.236.0 - - High
418 45.94.163.0 - - High
419 45.130.138.0 - - High
420 45.133.180.0 - - High
421 45.134.143.0 unn-45-134-143-0.cdn77.com - High
422 45.144.188.0 - - High
423 45.145.251.0 - - High
424 45.157.138.0 - - High
425 45.163.48.0 - - High
426 45.163.120.0 - - High
427 45.164.20.0 - - High
428 45.164.21.0 - - High
429 45.164.23.0 - - High
430 45.164.108.0 - - High
431 45.164.136.0 - - High
432 45.164.168.0 - - High
433 45.164.206.0 - - High
434 45.164.236.0 - - High
435 45.166.100.0 - - High
436 45.166.108.0 - - High
437 45.166.110.0 - - High
438 45.166.216.0 - - High
439 45.167.12.0 45-167-12-0.laredonet.com - High
440 45.167.92.0 - - High
441 45.167.112.0 - - High
442 45.167.156.0 - - High
443 45.167.176.0 - - High
444 45.167.200.0 - - High
445 45.167.252.0 - - High
446 45.168.228.0 - - High
447 45.168.232.0 - - High
448 45.169.236.0 - - High
449 45.170.188.0 - - High
450 45.170.244.0 - - High
451 45.170.248.0 - - High
452 45.170.250.0 - - High
453 45.170.253.0 - - High
454 45.170.254.0 - - High
455 45.171.76.0 - - High
456 45.171.156.0 - - High
457 45.172.88.0 - - High
458 45.174.44.0 44.0.interphonettelecom.com - High
459 45.174.56.0 - - High
460 45.174.68.0 - - High
461 45.174.72.0 72.0.doornet.mx - High
462 45.174.84.0 - - High
463 45.174.88.0 88.0.cedsabest.com - High
464 45.174.98.0 - - High
465 45.174.108.0 108.0.m-net.mx - High
466 45.174.124.0 124.0.neurotechmexico.com - High
467 45.174.168.0 la-argentina.wiikinetworks.com.mx - High
468 45.174.200.0 45.174.200.0.red-7.net - High
469 45.174.228.0 45-174-228.0.ifs.com.mx - High
470 45.174.240.0 - - High
471 45.175.232.0 45-175-232-0.inbtel.com - High
472 45.175.252.0 252.0.ibyte.mx - High
473 45.176.188.0 45.176.188.0.ipcomsistemas.co - High
474 45.176.189.0 host-45-176-189-0.fastnetisp.co - High
475 45.176.190.0 - - High
476 45.176.191.0 - - High
477 45.176.236.0 236.0.neurotechmexico.com - High
478 45.177.40.0 - - High
479 45.177.176.0 - - High
480 45.177.198.0 - - High
481 45.178.72.0 id-ax-cun-centralia-oficinaabix.abix.mx - High
482 45.178.88.0 - - High
483 45.180.8.0 - - High
484 45.180.232.0 - - High
485 45.180.244.0 - - High
486 45.181.12.0 - - High
487 45.181.40.0 - - High
488 45.181.42.0 - - High
489 45.183.178.0 - - High
490 45.184.124.0 - - High
491 45.185.240.0 - - High
492 45.186.126.0 - - High
493 45.187.44.0 - - High
494 45.187.148.0 0-148-187-45.mtnetworks.com.mx - High
495 45.188.48.0 - - High
496 45.188.76.0 - - High
497 45.188.92.0 - - High
498 45.188.108.0 0-108-188-45.conectared.com.mx - High
499 45.188.124.0 - - High
500 45.188.133.0 - - High
501 45.188.164.0 - - High
502 45.189.60.0 - - High
503 45.189.148.0 - - High
504 45.189.152.0 - - High
505 45.189.236.0 - - High
506 45.189.252.0 - - High
507 45.190.76.0 dynamic-45-190-76-0.metanet.mx - High
508 45.190.87.0 - - High
509 45.190.180.0 - - High
510 45.190.196.0 0-196-190-45.tecnianet.com.mx - High
511 45.190.236.0 - - High
512 45.190.240.0 - - High
513 45.191.52.0 m45-191-52-0.xknet.mx - High
514 45.195.1.0 - - High
515 45.203.40.0 - - High
516 45.226.59.0 - - High
517 45.228.36.0 - - High
518 45.228.68.0 - - High
519 45.230.124.0 - - High
520 45.230.172.0 - - High
521 45.231.40.0 - - High
522 45.231.44.0 - - High
523 45.231.108.0 ip-45-231-108-0.convergenciainalambrica.net - High
524 45.231.168.0 - - High
525 45.231.220.0 45-231-220-0.dyn.distrokom.net - High
526 45.232.252.0 - - High
527 45.233.116.0 - - High
528 45.235.128.0 - - High
529 45.235.172.0 - - High
530 45.235.252.0 - - High
531 45.238.188.0 - - High
532 45.239.16.0 bajadatacenter.com.mx - High
533 45.239.68.0 - - High
534 45.239.76.0 - - High
535 46.36.200.121 - - High
536 46.36.200.122 - - High
537 46.36.200.124 - - High
538 46.36.200.128 - - High
539 46.36.200.130 - - High
540 46.36.200.191 - - High
541 46.36.200.192 - - High
542 46.36.201.206 - - High
543 46.36.201.208 - - High
544 46.36.202.21 - - High
545 46.36.202.22 - - High
546 46.36.202.24 - - High
547 46.36.202.28 - - High
548 46.36.202.30 - - High
549 46.36.202.44 - - High
550 50.7.185.0 50-7-185-0.host-engine.com - High
551 52.108.126.0 - - High
552 52.109.82.0 - - High
553 52.111.195.0 - - High
554 52.253.207.0 - - High
555 52.253.208.0 - - High
556 57.68.192.0 - - High
557 57.76.0.0 - - High
558 62.65.0.0 - - High
559 62.65.8.0 - - High
560 62.65.12.0 - - High
561 62.95.55.0 - - High
562 62.95.56.0 - - High
563 62.100.208.0 - - High
564 62.100.209.0 - - High
565 62.164.17.0 - - High
566 62.164.18.0 - - High
567 62.164.104.0 h.62-164-104-0.r.subpodhost.com - High
568 63.70.72.0 - - High
569 63.70.234.0 - - High
570 63.84.64.0 - - High
571 63.84.65.0 - - High
572 63.96.221.0 - - High
573 63.110.120.0 - - High
574 63.110.188.0 - - High
575 63.110.189.0 - - High
576 63.161.144.160 - - High
577 63.161.144.192 - - High
578 63.161.144.208 - - High
579 63.167.55.64 - - High
580 63.173.125.8 - - High
581 63.173.125.16 - - High
582 63.173.125.32 - - High
583 63.173.125.64 - - High
584 63.173.125.128 - - High
585 63.217.224.0 - - High
586 63.218.161.0 63-218-161-0.static.pccwglobal.net - High
587 63.219.40.0 - - High
588 63.221.131.0 - - High
589 63.221.132.0 - - High
590 63.222.46.16 - - High
591 63.222.89.0 63-222-89-0.static.pccwglobal.net - High
592 63.222.89.44 - - High
593 63.222.202.0 - - High
594 63.223.148.72 63-223-148-72.static.pccwglobal.net - High
595 63.245.6.203 - - High
596 63.245.61.0 - - High
597 63.245.62.0 - - High
598 63.245.90.187 - - High
599 63.245.105.0 ired.olttmp.abix.mx - High
600 64.9.239.80 user-64-9-239-80.googlewifi.com - High
601 64.9.239.208 user-64-9-239-208.googlewifi.com - High
602 64.9.247.80 - - High
603 64.9.247.208 - - High
604 64.9.251.80 - - High
605 64.9.251.208 - - High
606 64.9.255.80 - - High
607 64.9.255.208 - - High
608 64.12.64.0 lo0.core1.tlc.edgecastcdn.net - High
609 64.47.45.160 host-64-47-45-160.masergy.com - High
610 64.47.129.5 host-64-47-129-5.masergy.com - High
611 64.64.98.132 - - High
612 64.64.98.134 - - High
613 64.64.127.126 - - High
614 64.64.127.128 p94vi.com - High
615 64.68.212.120 64.68.223-120.transtelco.net - High
616 64.68.221.0 64.68.221-0.transtelco.net - High
617 64.68.222.0 64.68.222-0.transtelco.net - High
618 64.68.223.0 64.68.223-0.transtelco.net - High
619 64.86.181.0 - - High
620 64.117.59.0 - - High
621 64.201.140.140 cust140.telwestnet.net - High
622 64.208.4.0 - - High
623 64.208.40.216 - - High
624 64.208.40.224 - - High
625 64.208.40.228 - - High
626 64.208.44.0 - - High
627 64.208.125.96 - - High
628 64.208.125.136 - - High
629 64.208.125.144 - - High
630 64.208.125.152 - - High
631 64.208.125.188 - - High
632 64.208.181.72 - - High
633 64.208.239.0 - - High
634 64.209.12.0 - - High
635 64.209.13.148 - - High
636 64.209.72.0 - - High
637 64.209.73.0 - - High
638 64.209.73.64 - - High
639 64.209.73.80 - - High
640 64.209.73.86 - - High
641 64.209.73.90 - - High
642 64.209.73.92 - - High
643 64.209.73.98 - - High
644 64.209.73.100 - - High
645 64.209.73.104 - - High
646 64.209.73.112 - - High
647 64.209.73.128 - - High
648 64.209.73.138 - - High
649 64.209.73.140 - - High
650 64.209.73.144 - - High
651 64.209.73.160 - - High
652 64.209.73.192 - - High
653 64.211.15.0 - - High
654 64.211.23.0 - - High
655 64.212.8.0 - - High
656 64.213.107.240 - - High
657 64.215.5.0 - - High
658 64.215.5.16 - - High
659 64.215.5.32 - - High
660 64.215.5.128 - - High
661 64.215.5.138 - - High
662 64.215.5.140 - - High
663 64.215.5.144 - - High
664 64.215.5.160 - - High
665 64.215.5.192 - - High
666 64.215.153.13 - - High
667 64.215.153.187 - - High
668 64.215.153.192 - - High
669 64.215.153.255 - - High
670 65.9.12.0 server-65-9-12-0.qro50.r.cloudfront.net - High
671 65.9.15.0 server-65-9-15-0.qro51.r.cloudfront.net - High
672 65.9.114.0 server-65-9-114-0.qro50.r.cloudfront.net - High
673 65.9.116.0 server-65-9-116-0.qro50.r.cloudfront.net - High
674 65.9.120.0 server-65-9-120-0.qro50.r.cloudfront.net - High
675 65.9.128.0 server-65-9-128-0.qro50.r.cloudfront.net - High
676 65.9.143.0 server-65-9-143-0.qro51.r.cloudfront.net - High
677 65.9.144.0 server-65-9-144-0.qro51.r.cloudfront.net - High
678 65.9.152.0 server-65-9-152-0.qro51.r.cloudfront.net - High
679 65.9.156.0 server-65-9-156-0.qro51.r.cloudfront.net - High
680 65.156.219.0 - - High
681 65.175.14.48 - - High
682 65.199.232.82 - - High
683 65.204.164.0 - - High
684 65.204.166.0 - - High
685 65.222.234.36 - - High
686 65.229.152.0 - - High
687 66.23.208.0 - - High
688 66.28.1.105 lo0.rcr71.pvd01.atlas.cogentco.com - High
689 66.28.1.241 lo0.rcr21.mex01.atlas.cogentco.com - High
690 66.38.240.0 - - High
691 66.96.118.128 - - High
692 66.110.16.37 - - High
693 66.110.17.0 - - High
694 66.110.17.4 - - High
695 66.119.76.0 - - High
696 66.205.35.0 - - High
697 66.205.41.0 - - High
698 66.208.112.24 66-208-112-24.transtelco.net - High
699 66.208.112.44 - - High
700 66.208.112.144 66-208-112-144.transtelco.net - High
701 66.208.113.0 - - High
702 66.208.113.64 66-208-113-64.transtelco.net - High
703 66.208.113.96 66-208-113-96.transtelco.net - High
704 66.208.113.112 66-208-113-112.transtelco.net - High
705 66.208.113.116 66-208-113-116.transtelco.net - High
706 66.208.113.118 66-208-113-118.transtelco.net - High
707 66.208.113.120 66-208-113-120.transtelco.net - High
708 66.208.113.128 - - High
709 66.208.113.192 66-208-113-192.transtelco.net - High
710 66.208.113.208 66-208-113-208.transtelco.net - High
711 66.208.113.210 66-208-113-210.transtelco.net - High
712 66.208.113.212 66-208-113-212.transtelco.net - High
713 66.208.113.216 66-208-113-216.transtelco.net - High
714 66.208.113.224 66-208-113-224.transtelco.net - High
715 66.208.114.0 - - High
716 66.208.114.48 66-208-114-48.transtelco.net - High
717 66.208.115.4 66-208-115-4.transtelco.net - High
718 66.208.115.196 66-208-115-196.transtelco.net - High
719 66.208.115.200 66-208-115-200.transtelco.net - High
720 66.208.115.224 66-208-115-224.transtelco.net - High
721 66.208.117.75 - - High
722 66.208.117.144 - - High
723 66.208.117.164 - - High
724 ... ... ... ...

There are 2890 more IOC items available. Please use our online service to access the data.

TTP - Tactics, Techniques, Procedures

Tactics, techniques, and procedures (TTP) summarize the suspected MITRE ATT&CK techniques used by Mexico Unknown. This data is unique as it uses our predictive model for actor profiling.

ID Technique Weakness Description Confidence
1 T1006 CWE-21, CWE-22, CWE-23, CWE-425 Pathname Traversal High
2 T1040 CWE-319 Authentication Bypass by Capture-replay High
3 T1055 CWE-74 Injection High
4 T1059 CWE-94, CWE-1321 Cross Site Scripting High
5 T1059.007 CWE-79, CWE-80 Cross Site Scripting High
6 ... ... ... ...

There are 22 more TTP items available. Please use our online service to access the data.

IOA - Indicator of Attack

These indicators of attack (IOA) list the potential fragments used for technical activities like reconnaissance, exploitation, privilege escalation, and exfiltration by Mexico Unknown. This data is unique as it uses our predictive model for actor profiling.

ID Type Indicator Confidence
1 File %SYSTEMDRIVE%\node_modules\.bin\wmic.exe High
2 File /admin/save.php High
3 File /admin/sys_sql_query.php High
4 File /api/baskets/{name} High
5 File /api/download High
6 File /api/v1/alerts High
7 File /api/v1/terminal/sessions/?limit=1 High
8 File /ari/asterisk/variable High
9 File /b2b-supermarket/shopping-cart High
10 File /category.php High
11 File /categorypage.php High
12 File /cgi-bin/luci/api/wireless High
13 File /cgi-bin/vitogate.cgi High
14 File /change-language/de_DE High
15 File /Content/Template/root/reverse-shell.aspx High
16 File /core/conditions/AbstractWrapper.java High
17 File /debug/pprof Medium
18 File /dist/index.js High
19 File /fcgi/scrut_fcgi.fcgi High
20 File /Forms/oadmin_1 High
21 File /forum/away.php High
22 File /geoserver/gwc/rest.html High
23 File /goform/formSysCmd High
24 File /HNAP1 Low
25 File /hosts/firewall/ip High
26 File /index.php Medium
27 File /index.php/ccm/system/file/upload High
28 File /jeecg-boot/sys/common/upload High
29 File /log/decodmail.php High
30 File /nagiosxi/admin/banner_message-ajaxhelper.php High
31 File /oauth/idp/.well-known/openid-configuration High
32 File /OA_HTML/cabo/jsps/a.jsp High
33 File /php/ping.php High
34 File /proxy Low
35 File /register.do Medium
36 File /RPS2019Service/status.html High
37 File /s/index.php?action=statistics High
38 File /scripts/unlock_tasks.php High
39 File /setting Medium
40 File /sicweb-ajax/tmproot/ High
41 File /skyboxview-softwareupdate/services/CollectorSoftwareUpdate High
42 ... ... ...

There are 362 more IOA items available (file, library, argument, input value, pattern, network port). Please use our online service to access the data.

References

The following list contains external sources which discuss the actor and the associated activities:

Literature

The following articles explain our unique predictive cyber threat intelligence:

License

(c) 1997-2024 by vuldb.com. All data on this page is shared under the license CC BY-NC-SA 4.0. Questions? Check the FAQ, read the documentation or contact us!