IronMonitor
Indicadores de Comprometimento (IOC´s)
21/02/2024 - Malware Migo
Hash256 Programa
364a7f8e3701a340400d77795512c18f680ee67e178880e1bb1fcda36ddbc12c xmrig
32d32bf0be126e685e898d0ac21d93618f95f405c6400e1c8b0a8a72aa753933 libsystemd.so
c5dc12dbb9bb51ea8acf93d6349d5bc7fe5ee11b68d6371c1bbb098e21d0f685 worker.tar.gz
2b03943244871ca75e44513e4d20470b8f3e0f209d185395de82b447022437ec config.json
IP País
103.79.118.221 singpura
==================================================================================================================================================
21/02/2024 - Ransomware RustDoor
Hash 256 Programa
fe565f4296570a89893828cdd61c6421cf745bab220e21cebce226863d5772a0 trojan.rustdoor
5763ab1ccadc2724d6ec728926eb4dc574a6005a8456a65035dee5edb3cc2a0a trojan.rustdoor
a9d299edf6b3bc1c98185e1c22ba7326f3ad6cba73ca00565330d5c3da50e02c VisualStudioUpdater_Patch
d505835c635e8ee29297ca628330b805965439ddc14d50a19bc088b5c123149b VisualStudioUpdater_Patch
20b986b24d86d9a06746bdb0c25e21a24cb477acb36e7427a8c465c08d51c1e4 Previewers
00b66c1e7e483da6cbcc0d94f01b9fca245fb052ef8e958e21abcb0880aff37f DO_NOT_RUN_ChromeUpdates
b0665afbd99baf586899abae457f702962503afb855f4bda58cf070ca1c69956 visualstudioupdate
238b546e2a1afc230f88b98dce1be6bf442b0b807e364106c0b28fe18db2ce66 VisualStudioUpdater
c93feb701e04cac4c6ed805d529378351e500ca1178958862d9e24c9f8723518 VisualStudioUpdater
4a59e2fe11ed9136d96a985448b34957ee5861adc9c1a52de4ad65880875dfdb VisualStudioUpdater
11c998005bcce297b6a0595b97281aca7a587b6bc1e6aa414609812108b3328c zshrc2
e96c13667bccd6c6c38d9797b15642bfea19080f9bc90d944e7ae6abfb4c64be zshrc2
6ea00e7d945e78f28d6043bb5d304e0f56d22ab104c9c74e77d1f8572dc17809 localfile~.arm64
bd1b0c5e48f4aa7595ef3e7dd125d0b95d39d647e480bd3c0c6ff7229d52f800 localfile~.arm64
b4991bc670ba62c77ffec0a2fe3c445085de822ce8b282265cb24cfbae951ae0 localfile~.x64
2acd053b854545d381866d471a711d860e84a38cb9f2e13983a74c4044080dc2 localfile~.x64
c30f634f56000e87c9c4258174ec09ee5bd67d29eca4e78f63c34f976b0272d8 localfile~.x64
698cab82b340f4d67d598dea480daa3a8c96ccaf0c778b36b7073c81c4c71760 localfile~.x64
f9a4f04d7222afbbadbf2cb417ee9e70733e1dcc2af94ec3cc9b6308a3216f93 localfile~.x64
f59fcbb11a66b6596c2cca926c54e0a4114687769e726c39f2a918dc9e332eff localfile~.x64
f11b0f67f76b7d49511a6212921901afae5b7ecd2bbc718a3d70f6ccb524903a localfile~.arm64
996921573bc8d2618eaf4b7532fc1b46074fe5cdc317f5a751fc70b5371362a3 localfile~.arm64
146f804dd4653429cf94f43d7d6c981d00809a09b5864e52e9c22df90df29c70 localfile~.arm64
01534a1849b197c03eb23c27d16ace7fc99778eeaa24953154e4f41afc712032 localfile~.arm64
ba0506213adba3b0878315adbc3c80397ba6483151229a4f5dedf3a62793d130 localfile~.arm64
449cc50caf2f4b85c6425fea809aa662b80f17821a8f3dc47fe8586ee56bd1dc localfile~.arm64
9a3a9238d0f043d7b806bc138c955112b698ce1161d2bf6c194b1747d6d7cd00 localfile~.x64
82e88d4203ac35ce4516e937412f60ec48e0ebabf55c1a2531bd16a22da14f05 localfile~.x64
481a279e15f808d695da233f690a0e3eb15d9b90fce42b9edb1ee296af6289d7 localfile~.x64
43609c813c3084532073a22f24e931f24c04e118dcd972c6c8f0428637d9c0ff localfile~.x64
e86963c94f3c1de1ccfffaa4d192d39881a24df8b175c00fd64a4e076826b76b localfile~.x64
a69d91cf565e717662d0470183cced3350ba0bb4f91d2ced3f089af3a707c5c3 localfile~.x64
312eaabd6f7f6c2f3453b8ea331f10016bda2de9b92b1ea521a40ac373aa05fe localfile~.x64
5763ab1ccadc2724d6ec728926eb4dc574a6005a8456a65035dee5edb3cc2a0a VisualStudioUpdater_Patch
a9d299edf6b3bc1c98185e1c22ba7326f3ad6cba73ca00565330d5c3da50e02c VisualStudioUpdater_Patch
fe565f4296570a89893828cdd61c6421cf745bab220e21cebce226863d5772a0 VisualStudioUpdating
d505835c635e8ee29297ca628330b805965439ddc14d50a19bc088b5c123149b VisualStudioUpdater_Patch
20b986b24d86d9a06746bdb0c25e21a24cb477acb36e7427a8c465c08d51c1e4 Previewers
00b66c1e7e483da6cbcc0d94f01b9fca245fb052ef8e958e21abcb0880aff37f DO_NOT_RUN_ChromeUpdates
b0665afbd99baf586899abae457f702962503afb855f4bda58cf070ca1c69956 visualstudioupdate
238b546e2a1afc230f88b98dce1be6bf442b0b807e364106c0b28fe18db2ce66 VisualStudioUpdater
c93feb701e04cac4c6ed805d529378351e500ca1178958862d9e24c9f8723518 VisualStudioUpdater
4a59e2fe11ed9136d96a985448b34957ee5861adc9c1a52de4ad65880875dfdb VisualStudioUpdater
11c998005bcce297b6a0595b97281aca7a587b6bc1e6aa414609812108b3328c zshrc2
e96c13667bccd6c6c38d9797b15642bfea19080f9bc90d944e7ae6abfb4c64be zshrc2
6ea00e7d945e78f28d6043bb5d304e0f56d22ab104c9c74e77d1f8572dc17809 localfile~.arm64
bd1b0c5e48f4aa7595ef3e7dd125d0b95d39d647e480bd3c0c6ff7229d52f800 localfile~.arm64
b4991bc670ba62c77ffec0a2fe3c445085de822ce8b282265cb24cfbae951ae0 localfile~.x64
2acd053b854545d381866d471a711d860e84a38cb9f2e13983a74c4044080dc2 localfile~.x64
c30f634f56000e87c9c4258174ec09ee5bd67d29eca4e78f63c34f976b0272d8 localfile~.x64
698cab82b340f4d67d598dea480daa3a8c96ccaf0c778b36b7073c81c4c71760 localfile~.x64
f9a4f04d7222afbbadbf2cb417ee9e70733e1dcc2af94ec3cc9b6308a3216f93 localfile~.x64
f59fcbb11a66b6596c2cca926c54e0a4114687769e726c39f2a918dc9e332eff localfile~.arm64
f11b0f67f76b7d49511a6212921901afae5b7ecd2bbc718a3d70f6ccb524903a localfile~.arm64
996921573bc8d2618eaf4b7532fc1b46074fe5cdc317f5a751fc70b5371362a3 localfile~.arm64
146f804dd4653429cf94f43d7d6c981d00809a09b5864e52e9c22df90df29c70 localfile~.arm64
01534a1849b197c03eb23c27d16ace7fc99778eeaa24953154e4f41afc712032 localfile~.arm64
ba0506213adba3b0878315adbc3c80397ba6483151229a4f5dedf3a62793d130 localfile~.arm64
449cc50caf2f4b85c6425fea809aa662b80f17821a8f3dc47fe8586ee56bd1dc localfile~.arm64
9a3a9238d0f043d7b806bc138c955112b698ce1161d2bf6c194b1747d6d7cd00 localfile~.x64
82e88d4203ac35ce4516e937412f60ec48e0ebabf55c1a2531bd16a22da14f05 localfile~.x64
481a279e15f808d695da233f690a0e3eb15d9b90fce42b9edb1ee296af6289d7 localfile~.x64
43609c813c3084532073a22f24e931f24c04e118dcd972c6c8f0428637d9c0ff localfile~.x64
e86963c94f3c1de1ccfffaa4d192d39881a24df8b175c00fd64a4e076826b76b localfile~.x64
a69d91cf565e717662d0470183cced3350ba0bb4f91d2ced3f089af3a707c5c3 localfile~.x64
312eaabd6f7f6c2f3453b8ea331f10016bda2de9b92b1ea521a40ac373aa05fe localfile~.x64
Ip País
193.29.13.167 Romênia
88.214.26.22 Bulgária
Domínio País
maconlineoffice.com Malásia
serviceicloud.com Malásia
sarkerrentacars.com Singapura
turkishfurniture.blog Turquia
linksammosupply.com Canada
Copyright Iron Monitor - Crédits Rodrigo Medina