mirror of
https://github.com/vuldb/cyber_threat_intelligence
synced 2024-07-03 08:58:21 +00:00
344 lines
23 KiB
Markdown
344 lines
23 KiB
Markdown
# Latvia Unknown - Cyber Threat Intelligence
|
|
|
|
These _indicators_ were reported, collected, and generated during the [VulDB CTI analysis](https://vuldb.com/?kb.cti) of the actor known as [Latvia Unknown](https://vuldb.com/?actor.latvia_unknown). The _activity monitoring_ correlates data from social media, forums, chat rooms, and darknet markets. It helps to determine associated actors, specific activities, expected intentions, emerging research, and ongoing attacks. Our unique _predictive model_ uses _big data_ to forecast activities and their characteristics.
|
|
|
|
_Live data_ and more _analysis capabilities_ are available at [https://vuldb.com/?actor.latvia_unknown](https://vuldb.com/?actor.latvia_unknown)
|
|
|
|
## Countries
|
|
|
|
These _countries_ are directly (e.g. origin of attacks) or indirectly (e.g. access by proxy) associated with Latvia Unknown:
|
|
|
|
* [US](https://vuldb.com/?country.us)
|
|
* [CN](https://vuldb.com/?country.cn)
|
|
* [GB](https://vuldb.com/?country.gb)
|
|
* ...
|
|
|
|
There are 17 more country items available. Please use our online service to access the data.
|
|
|
|
## IOC - Indicator of Compromise
|
|
|
|
These _indicators of compromise_ (IOC) indicate associated network resources which are known to be part of research and attack activities of Latvia Unknown.
|
|
|
|
ID | IP address | Hostname | Campaign | Confidence
|
|
-- | ---------- | -------- | -------- | ----------
|
|
1 | [2.56.141.0](https://vuldb.com/?ip.2.56.141.0) | - | - | High
|
|
2 | [2.56.142.0](https://vuldb.com/?ip.2.56.142.0) | - | - | High
|
|
3 | [2.58.16.0](https://vuldb.com/?ip.2.58.16.0) | - | - | High
|
|
4 | [5.44.216.0](https://vuldb.com/?ip.5.44.216.0) | subnet.camelhost.lv | - | High
|
|
5 | [5.45.44.0](https://vuldb.com/?ip.5.45.44.0) | - | - | High
|
|
6 | [5.62.60.212](https://vuldb.com/?ip.5.62.60.212) | r-212-60-62-5.consumer-pool.prcdn.net | - | High
|
|
7 | [5.62.62.204](https://vuldb.com/?ip.5.62.62.204) | r-204-62-62-5.consumer-pool.prcdn.net | - | High
|
|
8 | [5.62.154.0](https://vuldb.com/?ip.5.62.154.0) | - | - | High
|
|
9 | [5.101.220.128](https://vuldb.com/?ip.5.101.220.128) | - | - | High
|
|
10 | [5.152.224.0](https://vuldb.com/?ip.5.152.224.0) | - | - | High
|
|
11 | [5.179.0.0](https://vuldb.com/?ip.5.179.0.0) | - | - | High
|
|
12 | [5.180.45.0](https://vuldb.com/?ip.5.180.45.0) | 0.45-180-5.rdns.scalabledns.com | - | High
|
|
13 | [8.40.29.0](https://vuldb.com/?ip.8.40.29.0) | - | - | High
|
|
14 | [16.242.236.0](https://vuldb.com/?ip.16.242.236.0) | - | - | High
|
|
15 | [17.118.242.0](https://vuldb.com/?ip.17.118.242.0) | - | - | High
|
|
16 | [17.119.228.0](https://vuldb.com/?ip.17.119.228.0) | - | - | High
|
|
17 | [23.67.49.0](https://vuldb.com/?ip.23.67.49.0) | a23-67-49-0.deploy.static.akamaitechnologies.com | - | High
|
|
18 | [23.74.0.0](https://vuldb.com/?ip.23.74.0.0) | a23-74-0-0.deploy.static.akamaitechnologies.com | - | High
|
|
19 | [31.6.23.0](https://vuldb.com/?ip.31.6.23.0) | - | - | High
|
|
20 | [31.24.192.0](https://vuldb.com/?ip.31.24.192.0) | - | - | High
|
|
21 | [31.42.80.0](https://vuldb.com/?ip.31.42.80.0) | - | - | High
|
|
22 | [31.42.88.0](https://vuldb.com/?ip.31.42.88.0) | - | - | High
|
|
23 | [31.42.91.0](https://vuldb.com/?ip.31.42.91.0) | - | - | High
|
|
24 | [31.42.92.0](https://vuldb.com/?ip.31.42.92.0) | - | - | High
|
|
25 | [31.131.88.0](https://vuldb.com/?ip.31.131.88.0) | 31-131-88-0.88.131.31.in-addr.arpa | - | High
|
|
26 | [31.131.90.0](https://vuldb.com/?ip.31.131.90.0) | 31-131-90-0.skandinetworks.com | - | High
|
|
27 | [31.131.91.0](https://vuldb.com/?ip.31.131.91.0) | 31-131-91-0.skandinetworks.com | - | High
|
|
28 | [31.170.16.0](https://vuldb.com/?ip.31.170.16.0) | - | - | High
|
|
29 | [31.222.233.0](https://vuldb.com/?ip.31.222.233.0) | 31-222-233-0.233.222.31.in-addr.arpa | - | High
|
|
30 | [37.148.168.0](https://vuldb.com/?ip.37.148.168.0) | - | - | High
|
|
31 | [37.203.32.0](https://vuldb.com/?ip.37.203.32.0) | rev-37-203-32-0.deac.net | - | High
|
|
32 | [37.203.34.0](https://vuldb.com/?ip.37.203.34.0) | rev-37-203-34-0.deac.net | - | High
|
|
33 | [37.203.36.0](https://vuldb.com/?ip.37.203.36.0) | rev-37-203-36-0.deac.net | - | High
|
|
34 | [37.209.160.0](https://vuldb.com/?ip.37.209.160.0) | - | - | High
|
|
35 | [45.11.192.0](https://vuldb.com/?ip.45.11.192.0) | 45-11-192-0.netnamas.com | - | High
|
|
36 | [45.11.193.0](https://vuldb.com/?ip.45.11.193.0) | 45-11-193-0.netnamas.com | - | High
|
|
37 | [45.11.194.0](https://vuldb.com/?ip.45.11.194.0) | 45-11-194-0.netnamas.com | - | High
|
|
38 | [45.12.70.136](https://vuldb.com/?ip.45.12.70.136) | vm0-static.alltieinc.com | - | High
|
|
39 | [45.12.71.136](https://vuldb.com/?ip.45.12.71.136) | - | - | High
|
|
40 | [45.13.96.0](https://vuldb.com/?ip.45.13.96.0) | - | - | High
|
|
41 | [45.65.124.0](https://vuldb.com/?ip.45.65.124.0) | 45-65-124-0.kvantanetas.com | - | High
|
|
42 | [45.65.126.0](https://vuldb.com/?ip.45.65.126.0) | 45-65-126-0.kvantanetas.com | - | High
|
|
43 | [45.80.42.1](https://vuldb.com/?ip.45.80.42.1) | - | - | High
|
|
44 | [45.80.52.0](https://vuldb.com/?ip.45.80.52.0) | - | - | High
|
|
45 | [45.80.53.0](https://vuldb.com/?ip.45.80.53.0) | - | - | High
|
|
46 | [45.80.54.0](https://vuldb.com/?ip.45.80.54.0) | - | - | High
|
|
47 | [45.86.188.0](https://vuldb.com/?ip.45.86.188.0) | - | - | High
|
|
48 | [45.87.154.0](https://vuldb.com/?ip.45.87.154.0) | subnet.stark-industries.solutions | - | High
|
|
49 | [45.95.80.0](https://vuldb.com/?ip.45.95.80.0) | 0.80.95.45.quadite.com | - | High
|
|
50 | [45.95.83.0](https://vuldb.com/?ip.45.95.83.0) | - | - | High
|
|
51 | [45.128.44.0](https://vuldb.com/?ip.45.128.44.0) | - | - | High
|
|
52 | [45.128.151.0](https://vuldb.com/?ip.45.128.151.0) | subnet.isplevel.name | - | High
|
|
53 | [45.130.148.0](https://vuldb.com/?ip.45.130.148.0) | - | - | High
|
|
54 | [45.133.216.0](https://vuldb.com/?ip.45.133.216.0) | subnet.stark-industries.solutions | - | High
|
|
55 | [45.142.213.0](https://vuldb.com/?ip.45.142.213.0) | subnet.stark-industries.solutions | - | High
|
|
56 | [45.142.215.0](https://vuldb.com/?ip.45.142.215.0) | subnet.stark-industries.solutions | - | High
|
|
57 | [45.143.141.0](https://vuldb.com/?ip.45.143.141.0) | - | - | High
|
|
58 | [46.16.128.0](https://vuldb.com/?ip.46.16.128.0) | 46-16-128-0.eternaldatas.com | - | High
|
|
59 | [46.19.144.0](https://vuldb.com/?ip.46.19.144.0) | - | - | High
|
|
60 | [46.19.200.0](https://vuldb.com/?ip.46.19.200.0) | - | - | High
|
|
61 | [46.23.32.0](https://vuldb.com/?ip.46.23.32.0) | - | - | High
|
|
62 | [46.28.56.0](https://vuldb.com/?ip.46.28.56.0) | - | - | High
|
|
63 | [46.28.60.0](https://vuldb.com/?ip.46.28.60.0) | - | - | High
|
|
64 | [46.28.62.0](https://vuldb.com/?ip.46.28.62.0) | - | - | High
|
|
65 | [46.109.0.0](https://vuldb.com/?ip.46.109.0.0) | - | - | High
|
|
66 | [46.183.216.0](https://vuldb.com/?ip.46.183.216.0) | - | - | High
|
|
67 | [57.86.168.0](https://vuldb.com/?ip.57.86.168.0) | - | - | High
|
|
68 | [57.87.144.0](https://vuldb.com/?ip.57.87.144.0) | - | - | High
|
|
69 | [62.63.128.0](https://vuldb.com/?ip.62.63.128.0) | - | - | High
|
|
70 | [62.63.144.0](https://vuldb.com/?ip.62.63.144.0) | - | - | High
|
|
71 | [62.63.152.0](https://vuldb.com/?ip.62.63.152.0) | - | - | High
|
|
72 | [62.63.156.0](https://vuldb.com/?ip.62.63.156.0) | - | - | High
|
|
73 | [62.63.158.0](https://vuldb.com/?ip.62.63.158.0) | - | - | High
|
|
74 | [62.63.160.0](https://vuldb.com/?ip.62.63.160.0) | - | - | High
|
|
75 | [62.84.0.0](https://vuldb.com/?ip.62.84.0.0) | - | - | High
|
|
76 | [62.85.0.0](https://vuldb.com/?ip.62.85.0.0) | - | - | High
|
|
77 | [62.106.65.0](https://vuldb.com/?ip.62.106.65.0) | - | - | High
|
|
78 | [62.115.175.0](https://vuldb.com/?ip.62.115.175.0) | phm-b1-link.ip.twelve99.net | - | High
|
|
79 | [62.115.177.0](https://vuldb.com/?ip.62.115.177.0) | ddf-b4-link.ip.twelve99.net | - | High
|
|
80 | [62.122.16.0](https://vuldb.com/?ip.62.122.16.0) | - | - | High
|
|
81 | [62.128.106.0](https://vuldb.com/?ip.62.128.106.0) | - | - | High
|
|
82 | [62.128.107.0](https://vuldb.com/?ip.62.128.107.0) | - | - | High
|
|
83 | [62.140.243.118](https://vuldb.com/?ip.62.140.243.118) | riga-tvt-b1-ae5-vlan3748.fiord.net | - | High
|
|
84 | [62.140.243.148](https://vuldb.com/?ip.62.140.243.148) | msk-m9-b4-ae3-vlan3700.fiord.net | - | High
|
|
85 | [62.140.243.170](https://vuldb.com/?ip.62.140.243.170) | riga-tvt-b1-ae5-vlan3725.fiord.net | - | High
|
|
86 | [62.140.244.88](https://vuldb.com/?ip.62.140.244.88) | 62-140-244-88.fiord.ru | - | High
|
|
87 | [62.140.245.50](https://vuldb.com/?ip.62.140.245.50) | riga-tvt-ae5-vlan3711.fiord.net | - | High
|
|
88 | [62.140.245.129](https://vuldb.com/?ip.62.140.245.129) | riga-tvt-b1-ae5-vlan3701.fiord.net | - | High
|
|
89 | [62.140.245.131](https://vuldb.com/?ip.62.140.245.131) | riga-tvt-b1-ae5-vlan3702.fiord.net | - | High
|
|
90 | [62.140.247.120](https://vuldb.com/?ip.62.140.247.120) | 62-140-247-120.fiord.ru | - | High
|
|
91 | [62.140.250.76](https://vuldb.com/?ip.62.140.250.76) | 62-140-250-76.fiord.net | - | High
|
|
92 | [62.140.250.244](https://vuldb.com/?ip.62.140.250.244) | 62-140-250-244.fiord.ru | - | High
|
|
93 | [62.140.255.45](https://vuldb.com/?ip.62.140.255.45) | fiord.net | - | High
|
|
94 | [62.140.255.148](https://vuldb.com/?ip.62.140.255.148) | riga-tvt-b1-ae1.fiord.net | - | High
|
|
95 | [62.205.192.0](https://vuldb.com/?ip.62.205.192.0) | - | - | High
|
|
96 | [63.246.36.192](https://vuldb.com/?ip.63.246.36.192) | - | - | High
|
|
97 | [64.64.105.120](https://vuldb.com/?ip.64.64.105.120) | - | - | High
|
|
98 | [77.38.128.0](https://vuldb.com/?ip.77.38.128.0) | r0-128-38-77-broadband.btv.lv | - | High
|
|
99 | [77.73.32.0](https://vuldb.com/?ip.77.73.32.0) | 77-73-32-0.32.73.77.in-addr.arpa | - | High
|
|
100 | [77.73.71.0](https://vuldb.com/?ip.77.73.71.0) | - | - | High
|
|
101 | [77.93.0.0](https://vuldb.com/?ip.77.93.0.0) | balticom-0-0.balticom.lv | - | High
|
|
102 | [77.219.0.0](https://vuldb.com/?ip.77.219.0.0) | m77-219-0-0.cust.tele2.lv | - | High
|
|
103 | [77.240.244.0](https://vuldb.com/?ip.77.240.244.0) | 77-240-244-0.csc.lv | - | High
|
|
104 | [77.241.65.0](https://vuldb.com/?ip.77.241.65.0) | - | - | High
|
|
105 | [77.241.67.0](https://vuldb.com/?ip.77.241.67.0) | - | - | High
|
|
106 | [77.241.160.0](https://vuldb.com/?ip.77.241.160.0) | - | - | High
|
|
107 | [78.28.192.0](https://vuldb.com/?ip.78.28.192.0) | - | - | High
|
|
108 | [78.28.196.0](https://vuldb.com/?ip.78.28.196.0) | - | - | High
|
|
109 | [78.28.198.0](https://vuldb.com/?ip.78.28.198.0) | - | - | High
|
|
110 | [78.28.200.0](https://vuldb.com/?ip.78.28.200.0) | - | - | High
|
|
111 | [78.28.208.0](https://vuldb.com/?ip.78.28.208.0) | - | - | High
|
|
112 | [78.28.224.0](https://vuldb.com/?ip.78.28.224.0) | - | - | High
|
|
113 | [78.28.229.0](https://vuldb.com/?ip.78.28.229.0) | - | - | High
|
|
114 | [78.28.230.0](https://vuldb.com/?ip.78.28.230.0) | - | - | High
|
|
115 | [78.28.232.0](https://vuldb.com/?ip.78.28.232.0) | - | - | High
|
|
116 | [78.28.240.0](https://vuldb.com/?ip.78.28.240.0) | - | - | High
|
|
117 | [78.84.0.0](https://vuldb.com/?ip.78.84.0.0) | - | - | High
|
|
118 | [78.154.128.0](https://vuldb.com/?ip.78.154.128.0) | - | - | High
|
|
119 | [79.132.64.0](https://vuldb.com/?ip.79.132.64.0) | r0-64-132-79-broadband.btv.lv | - | High
|
|
120 | [79.135.128.0](https://vuldb.com/?ip.79.135.128.0) | 0.128.135.79.microlines.lv | - | High
|
|
121 | [80.70.16.0](https://vuldb.com/?ip.80.70.16.0) | - | - | High
|
|
122 | [80.77.167.52](https://vuldb.com/?ip.80.77.167.52) | riga-lvrtc-b1-ae5-vlan3715.fiord.net | - | High
|
|
123 | [80.77.167.88](https://vuldb.com/?ip.80.77.167.88) | 80-77-167-88.fiord.net | - | High
|
|
124 | [80.77.173.112](https://vuldb.com/?ip.80.77.173.112) | 80-77-173-112.colo.fiord.ru | - | High
|
|
125 | [80.77.175.168](https://vuldb.com/?ip.80.77.175.168) | 80-77-175-168.colo.fiord.ru | - | High
|
|
126 | [80.81.32.0](https://vuldb.com/?ip.80.81.32.0) | - | - | High
|
|
127 | [80.89.72.0](https://vuldb.com/?ip.80.89.72.0) | host-80-89-72-0.lmt.lv | - | High
|
|
128 | [80.90.0.0](https://vuldb.com/?ip.80.90.0.0) | ip-80-90-0-0.ax5z.com | - | High
|
|
129 | [80.90.12.0](https://vuldb.com/?ip.80.90.12.0) | ip-80-90-12-0.ax5z.com | - | High
|
|
130 | [80.90.22.0](https://vuldb.com/?ip.80.90.22.0) | ip-80-90-22-0.ax5z.com | - | High
|
|
131 | [80.232.128.0](https://vuldb.com/?ip.80.232.128.0) | - | - | High
|
|
132 | [80.233.128.0](https://vuldb.com/?ip.80.233.128.0) | - | - | High
|
|
133 | [80.233.137.0](https://vuldb.com/?ip.80.233.137.0) | - | - | High
|
|
134 | [80.233.138.0](https://vuldb.com/?ip.80.233.138.0) | - | - | High
|
|
135 | [80.233.140.0](https://vuldb.com/?ip.80.233.140.0) | - | - | High
|
|
136 | [80.233.144.0](https://vuldb.com/?ip.80.233.144.0) | - | - | High
|
|
137 | [80.233.160.0](https://vuldb.com/?ip.80.233.160.0) | - | - | High
|
|
138 | [80.233.192.0](https://vuldb.com/?ip.80.233.192.0) | - | - | High
|
|
139 | [80.246.31.0](https://vuldb.com/?ip.80.246.31.0) | - | - | High
|
|
140 | [80.250.48.0](https://vuldb.com/?ip.80.250.48.0) | - | - | High
|
|
141 | [80.254.208.0](https://vuldb.com/?ip.80.254.208.0) | r0-208-254-80-broadband.btv.lv | - | High
|
|
142 | [80.255.224.0](https://vuldb.com/?ip.80.255.224.0) | - | - | High
|
|
143 | [81.31.196.0](https://vuldb.com/?ip.81.31.196.0) | - | - | High
|
|
144 | [81.92.27.248](https://vuldb.com/?ip.81.92.27.248) | - | - | High
|
|
145 | [81.94.224.0](https://vuldb.com/?ip.81.94.224.0) | rev-81-94-224-0.deac.net | - | High
|
|
146 | [81.163.72.0](https://vuldb.com/?ip.81.163.72.0) | - | - | High
|
|
147 | [81.198.0.0](https://vuldb.com/?ip.81.198.0.0) | - | - | High
|
|
148 | [82.193.64.0](https://vuldb.com/?ip.82.193.64.0) | balticom-64-0.balticom.lv | - | High
|
|
149 | [83.99.128.0](https://vuldb.com/?ip.83.99.128.0) | balticom-128-0.balticom.lv | - | High
|
|
150 | [83.136.136.0](https://vuldb.com/?ip.83.136.136.0) | - | - | High
|
|
151 | [83.176.130.0](https://vuldb.com/?ip.83.176.130.0) | m83-176-130-0.cust.tele2.hr | - | High
|
|
152 | [83.176.148.0](https://vuldb.com/?ip.83.176.148.0) | m83-176-148-0.cust.tele2.hr | - | High
|
|
153 | [83.176.152.0](https://vuldb.com/?ip.83.176.152.0) | m83-176-152-0.cust.tele2.hr | - | High
|
|
154 | [83.177.128.0](https://vuldb.com/?ip.83.177.128.0) | m83-177-128-0.cust.tele2.lv | - | High
|
|
155 | [83.177.168.0](https://vuldb.com/?ip.83.177.168.0) | s83-177-168-0.cust.comviq.se | - | High
|
|
156 | [83.177.176.1](https://vuldb.com/?ip.83.177.176.1) | s83-177-176-1.cust.comviq.se | - | High
|
|
157 | [83.177.176.2](https://vuldb.com/?ip.83.177.176.2) | s83-177-176-2.cust.comviq.se | - | High
|
|
158 | [83.177.176.4](https://vuldb.com/?ip.83.177.176.4) | s83-177-176-4.cust.comviq.se | - | High
|
|
159 | [83.177.176.8](https://vuldb.com/?ip.83.177.176.8) | s83-177-176-8.cust.comviq.se | - | High
|
|
160 | [83.177.176.16](https://vuldb.com/?ip.83.177.176.16) | s83-177-176-16.cust.comviq.se | - | High
|
|
161 | [83.177.176.32](https://vuldb.com/?ip.83.177.176.32) | s83-177-176-32.cust.comviq.se | - | High
|
|
162 | [83.177.176.64](https://vuldb.com/?ip.83.177.176.64) | s83-177-176-64.cust.comviq.se | - | High
|
|
163 | [83.177.176.128](https://vuldb.com/?ip.83.177.176.128) | s83-177-176-128.cust.comviq.se | - | High
|
|
164 | [83.177.177.0](https://vuldb.com/?ip.83.177.177.0) | s83-177-177-0.cust.comviq.se | - | High
|
|
165 | [83.177.178.0](https://vuldb.com/?ip.83.177.178.0) | s83-177-178-0.cust.comviq.se | - | High
|
|
166 | [83.177.180.0](https://vuldb.com/?ip.83.177.180.0) | s83-177-180-0.cust.comviq.se | - | High
|
|
167 | [83.177.184.0](https://vuldb.com/?ip.83.177.184.0) | s83-177-184-0.cust.comviq.se | - | High
|
|
168 | [83.177.188.0](https://vuldb.com/?ip.83.177.188.0) | s83-177-188-0.cust.comviq.se | - | High
|
|
169 | [83.177.188.128](https://vuldb.com/?ip.83.177.188.128) | s83-177-188-128.cust.comviq.se | - | High
|
|
170 | [83.177.188.160](https://vuldb.com/?ip.83.177.188.160) | s83-177-188-160.cust.comviq.se | - | High
|
|
171 | [83.177.188.162](https://vuldb.com/?ip.83.177.188.162) | s83-177-188-162.cust.comviq.se | - | High
|
|
172 | [83.177.188.164](https://vuldb.com/?ip.83.177.188.164) | s83-177-188-164.cust.comviq.se | - | High
|
|
173 | [83.177.188.168](https://vuldb.com/?ip.83.177.188.168) | s83-177-188-168.cust.comviq.se | - | High
|
|
174 | [83.177.188.176](https://vuldb.com/?ip.83.177.188.176) | s83-177-188-176.cust.comviq.se | - | High
|
|
175 | [83.177.188.192](https://vuldb.com/?ip.83.177.188.192) | s83-177-188-192.cust.comviq.se | - | High
|
|
176 | [83.177.189.0](https://vuldb.com/?ip.83.177.189.0) | s83-177-189-0.cust.comviq.se | - | High
|
|
177 | [83.177.190.0](https://vuldb.com/?ip.83.177.190.0) | s83-177-190-0.cust.comviq.se | - | High
|
|
178 | [83.178.72.0](https://vuldb.com/?ip.83.178.72.0) | - | - | High
|
|
179 | [83.178.128.0](https://vuldb.com/?ip.83.178.128.0) | m83-178-128-0.cust.tele2.lt | - | High
|
|
180 | [83.178.144.0](https://vuldb.com/?ip.83.178.144.0) | - | - | High
|
|
181 | [83.178.160.0](https://vuldb.com/?ip.83.178.160.0) | - | - | High
|
|
182 | [83.178.188.0](https://vuldb.com/?ip.83.178.188.0) | - | - | High
|
|
183 | [83.178.206.0](https://vuldb.com/?ip.83.178.206.0) | - | - | High
|
|
184 | [83.178.208.0](https://vuldb.com/?ip.83.178.208.0) | - | - | High
|
|
185 | [83.178.228.0](https://vuldb.com/?ip.83.178.228.0) | - | - | High
|
|
186 | [83.183.80.0](https://vuldb.com/?ip.83.183.80.0) | - | - | High
|
|
187 | [83.183.144.0](https://vuldb.com/?ip.83.183.144.0) | - | - | High
|
|
188 | [83.183.224.0](https://vuldb.com/?ip.83.183.224.0) | - | - | High
|
|
189 | [83.185.49.0](https://vuldb.com/?ip.83.185.49.0) | m83.185.49-0.cust.tele2.lv | - | High
|
|
190 | [83.187.152.0](https://vuldb.com/?ip.83.187.152.0) | - | - | High
|
|
191 | [83.188.176.0](https://vuldb.com/?ip.83.188.176.0) | - | - | High
|
|
192 | [83.223.128.0](https://vuldb.com/?ip.83.223.128.0) | - | - | High
|
|
193 | [83.241.0.0](https://vuldb.com/?ip.83.241.0.0) | - | - | High
|
|
194 | [83.243.88.0](https://vuldb.com/?ip.83.243.88.0) | - | - | High
|
|
195 | [84.15.1.128](https://vuldb.com/?ip.84.15.1.128) | - | - | High
|
|
196 | [84.15.16.0](https://vuldb.com/?ip.84.15.16.0) | - | - | High
|
|
197 | [84.15.65.0](https://vuldb.com/?ip.84.15.65.0) | - | - | High
|
|
198 | [84.15.136.0](https://vuldb.com/?ip.84.15.136.0) | IN-84-15-136-000.bitemobile.lv | - | High
|
|
199 | [84.15.192.0](https://vuldb.com/?ip.84.15.192.0) | IN-84-15-192-000.bitemobile.lv | - | High
|
|
200 | [84.15.208.0](https://vuldb.com/?ip.84.15.208.0) | IN-84-15-208-000.bitemobile.lv | - | High
|
|
201 | [84.38.128.0](https://vuldb.com/?ip.84.38.128.0) | - | - | High
|
|
202 | [84.38.130.0](https://vuldb.com/?ip.84.38.130.0) | - | - | High
|
|
203 | [84.38.132.0](https://vuldb.com/?ip.84.38.132.0) | - | - | High
|
|
204 | [84.38.134.0](https://vuldb.com/?ip.84.38.134.0) | - | - | High
|
|
205 | [84.38.136.0](https://vuldb.com/?ip.84.38.136.0) | - | - | High
|
|
206 | [84.237.128.0](https://vuldb.com/?ip.84.237.128.0) | - | - | High
|
|
207 | [84.245.192.0](https://vuldb.com/?ip.84.245.192.0) | customer.245.192.0.livas.lv | - | High
|
|
208 | [85.9.192.0](https://vuldb.com/?ip.85.9.192.0) | - | - | High
|
|
209 | [85.9.252.0](https://vuldb.com/?ip.85.9.252.0) | - | - | High
|
|
210 | [85.15.192.0](https://vuldb.com/?ip.85.15.192.0) | - | - | High
|
|
211 | [85.31.96.0](https://vuldb.com/?ip.85.31.96.0) | - | - | High
|
|
212 | [85.115.96.0](https://vuldb.com/?ip.85.115.96.0) | - | - | High
|
|
213 | [85.158.72.0](https://vuldb.com/?ip.85.158.72.0) | - | - | High
|
|
214 | [85.193.76.0](https://vuldb.com/?ip.85.193.76.0) | - | - | High
|
|
215 | [85.208.224.0](https://vuldb.com/?ip.85.208.224.0) | - | - | High
|
|
216 | ... | ... | ... | ...
|
|
|
|
There are 860 more IOC items available. Please use our online service to access the data.
|
|
|
|
## TTP - Tactics, Techniques, Procedures
|
|
|
|
_Tactics, techniques, and procedures_ (TTP) summarize the suspected MITRE ATT&CK techniques used by _Latvia Unknown_. This data is unique as it uses our predictive model for actor profiling.
|
|
|
|
ID | Technique | Weakness | Description | Confidence
|
|
-- | --------- | -------- | ----------- | ----------
|
|
1 | T1006 | CWE-21, CWE-22, CWE-23 | Pathname Traversal | High
|
|
2 | T1040 | CWE-294, CWE-319 | Authentication Bypass by Capture-replay | High
|
|
3 | T1055 | CWE-74 | Injection | High
|
|
4 | T1059 | CWE-88, CWE-94 | Cross Site Scripting | High
|
|
5 | T1059.007 | CWE-79, CWE-80 | Cross Site Scripting | High
|
|
6 | ... | ... | ... | ...
|
|
|
|
There are 20 more TTP items available. Please use our online service to access the data.
|
|
|
|
## IOA - Indicator of Attack
|
|
|
|
These _indicators of attack_ (IOA) list the potential fragments used for technical activities like reconnaissance, exploitation, privilege escalation, and exfiltration by Latvia Unknown. This data is unique as it uses our predictive model for actor profiling.
|
|
|
|
ID | Type | Indicator | Confidence
|
|
-- | ---- | --------- | ----------
|
|
1 | File | `//WEB-INF` | Medium
|
|
2 | File | `/?p=products` | Medium
|
|
3 | File | `/about.php` | Medium
|
|
4 | File | `/admin.php/accessory/filesdel.html` | High
|
|
5 | File | `/admin.php/update/getFile.html` | High
|
|
6 | File | `/admin/?page=user/manage` | High
|
|
7 | File | `/admin/add-new.php` | High
|
|
8 | File | `/admin/cashadvance_row.php` | High
|
|
9 | File | `/admin/doctors.php` | High
|
|
10 | File | `/admin/maintenance/view_designation.php` | High
|
|
11 | File | `/admin/userprofile.php` | High
|
|
12 | File | `/adms/admin/?page=vehicles/sell_vehicle` | High
|
|
13 | File | `/adms/admin/?page=vehicles/view_transaction` | High
|
|
14 | File | `/alphaware/summary.php` | High
|
|
15 | File | `/api/` | Low
|
|
16 | File | `/api/admin/store/product/list` | High
|
|
17 | File | `/api/stl/actions/search` | High
|
|
18 | File | `/api/v2/cli/commands` | High
|
|
19 | File | `/APR/login.php` | High
|
|
20 | File | `/bin/httpd` | Medium
|
|
21 | File | `/boat/login.php` | High
|
|
22 | File | `/bsms_ci/index.php/book` | High
|
|
23 | File | `/cgi-bin` | Medium
|
|
24 | File | `/cgi-bin/wapopen` | High
|
|
25 | File | `/cgi-bin/wlogin.cgi` | High
|
|
26 | File | `/debug/pprof` | Medium
|
|
27 | File | `/dev/block/mmcblk0rpmb` | High
|
|
28 | File | `/feeds/post/publish` | High
|
|
29 | File | `/forum/away.php` | High
|
|
30 | File | `/fos/admin/ajax.php?action=login` | High
|
|
31 | File | `/fos/admin/index.php?page=menu` | High
|
|
32 | File | `/home/masterConsole` | High
|
|
33 | File | `/home/sendBroadcast` | High
|
|
34 | File | `/inc/jquery/uploadify/uploadify.php` | High
|
|
35 | File | `/index.php?app=main&func=passport&action=login` | High
|
|
36 | File | `/index.php?page=category_list` | High
|
|
37 | File | `/medicines/profile.php` | High
|
|
38 | File | `/Moosikay/order.php` | High
|
|
39 | File | `/mygym/admin/index.php?view_exercises` | High
|
|
40 | File | `/opac/Actions.php?a=login` | High
|
|
41 | File | `/php-opos/index.php` | High
|
|
42 | File | `/PreviewHandler.ashx` | High
|
|
43 | File | `/public/launchNewWindow.jsp` | High
|
|
44 | File | `/reports/rwservlet` | High
|
|
45 | File | `/reservation/add_message.php` | High
|
|
46 | File | `/spip.php` | Medium
|
|
47 | File | `/uncpath/` | Medium
|
|
48 | File | `/user/updatePwd` | High
|
|
49 | File | `/vendor/htmlawed/htmlawed/htmLawedTest.php` | High
|
|
50 | File | `/video-sharing-script/watch-video.php` | High
|
|
51 | File | `/wireless/security.asp` | High
|
|
52 | File | `/wp-admin/admin-ajax.php` | High
|
|
53 | File | `01article.php` | High
|
|
54 | File | `a-forms.php` | Medium
|
|
55 | File | `AcquisiAction.class.php` | High
|
|
56 | File | `activenews_view.asp` | High
|
|
57 | File | `adclick.php` | Medium
|
|
58 | File | `admin.a6mambocredits.php` | High
|
|
59 | ... | ... | ...
|
|
|
|
There are 513 more IOA items available (file, library, argument, input value, pattern, network port). Please use our online service to access the data.
|
|
|
|
## References
|
|
|
|
The following list contains _external sources_ which discuss the actor and the associated activities:
|
|
|
|
* https://github.com/firehol/blocklist-ipsets/blob/master/geolite2_country/country_lv.netset
|
|
* https://github.com/firehol/blocklist-ipsets/blob/master/ip2location_country/ip2location_country_lv.netset
|
|
* https://github.com/firehol/blocklist-ipsets/blob/master/ipip_country/ipip_country_lv.netset
|
|
|
|
## Literature
|
|
|
|
The following _articles_ explain our unique predictive cyber threat intelligence:
|
|
|
|
* [VulDB Cyber Threat Intelligence Documentation](https://vuldb.com/?kb.cti)
|
|
* [Cyber Threat Intelligence - Early Anticipation of Attacks](https://www.scip.ch/en/?labs.20201022)
|
|
|
|
## License
|
|
|
|
(c) [1997-2023](https://vuldb.com/?kb.changelog) by [vuldb.com](https://vuldb.com/?kb.about). All data on this page is shared under the license [CC BY-NC-SA 4.0](https://creativecommons.org/licenses/by-nc-sa/4.0/). Questions? Check the [FAQ](https://vuldb.com/?kb.faq), read the [documentation](https://vuldb.com/?kb) or [contact us](https://vuldb.com/?contact)!
|