Proaktif Tehdit İstihbaratı Platformu
| IOC | Kaynak | Tespit Zamanı - UTC | Değişiklik | Son Kontrol Zamanı - UTC | USOM Durumu | Detay |
|---|---|---|---|---|---|---|
| 194.104.146.24:8888 | Malpulse | 2023-10-25 16:04 | - | - | - | Supershell |
| 46.29.238.83:3790 | Malpulse | 2023-10-25 16:01 | - | - | - | Metasploit |
| service-ltxouaof-1318291330.bj.apigw.tencentcs.com:443 | Malpulse | 2023-10-25 16:00 | - | - | - | CobaltStrike |
| 43.143.248.98:8099 | Malpulse | 2023-10-25 16:00 | - | - | - | CobaltStrike |
| 64.32.30.205:8888 | Malpulse | 2023-10-25 15:04 | - | - | - | Supershell |
| 35.203.83.183:2376 | Malpulse | 2023-10-25 15:00 | - | - | - | Sliver |
| 165.227.160.156:4433 | Malpulse | 2023-10-25 15:00 | - | - | - | CobaltStrike |
| 13.74.244.133:443 | Malpulse | 2023-10-25 14:00 | - | - | - | CobaltStrike |
| 52.186.179.225:1337 | Malpulse | 2023-10-25 13:03 | - | - | - | DCRat |
| 103.234.72.74:80 | Malpulse | 2023-10-25 13:00 | - | - | - | CobaltStrike |
| vpn.handyfang.top:9000 | Malpulse | 2023-10-25 13:00 | - | - | - | CobaltStrike |
| 152.136.104.49:8080 | Malpulse | 2023-10-25 12:00 | - | - | - | CobaltStrike |
| micrusroft.com:8443 | Malpulse | 2023-10-25 12:00 | - | - | - | CobaltStrike |
| hbxy.office365update.cn:443 | Malpulse | 2023-10-25 11:00 | - | - | - | CobaltStrike |
| 101.42.141.237:6666 | Malpulse | 2023-10-25 11:00 | - | - | - | CobaltStrike |
| 118.89.71.205:8999 | Malpulse | 2023-10-25 11:00 | - | - | - | CobaltStrike |
| service-oa25iv4d-1306428399.bj.apigw.tencentcs.com:80 | Malpulse | 2023-10-25 09:00 | - | - | - | CobaltStrike |
| 124.70.62.48:9999 | Malpulse | 2023-10-25 09:00 | - | - | - | CobaltStrike |
| 45.136.14.51:80 | Malpulse | 2023-10-25 07:00 | - | - | - | CobaltStrike |
| 49.233.56.4:8889 | Malpulse | 2023-10-25 06:00 | - | - | - | CobaltStrike |
| 43.138.172.184:7777 | Malpulse | 2023-10-25 06:00 | - | - | - | CobaltStrike |
| 185.225.74.128:8080 | Malpulse | 2023-10-25 06:00 | - | - | - | CobaltStrike |
| 37.1.214.130:443 | Malpulse | 2023-10-25 05:00 | - | - | - | CobaltStrike |
| 121.36.97.135:8888 | Malpulse | 2023-10-25 04:03 | - | - | - | Supershell |
| service-muqh31la-1321023534.gz.apigw.tencentcs.com:80 | Malpulse | 2023-10-25 04:00 | - | - | - | CobaltStrike |
| 101.42.167.87:80 | Malpulse | 2023-10-25 02:00 | - | - | - | CobaltStrike |
| 13.114.224.91:80 | Malpulse | 2023-10-25 01:00 | - | - | - | BruteRatel |
| 57.128.197.92:3790 | Malpulse | 2023-10-25 00:01 | - | - | - | Metasploit |
| 193.176.31.152:3790 | Malpulse | 2023-10-25 00:01 | - | - | - | Metasploit |
| 47.92.0.145:80 | Malpulse | 2023-10-25 00:00 | - | - | - | CobaltStrike |
| 106.12.174.99:80 | Malpulse | 2023-10-25 00:00 | - | - | - | CobaltStrike |
| 172.245.92.226:443 | Malpulse | 2023-10-24 23:00 | - | - | - | CobaltStrike |
| 54.93.80.66:2376 | Malpulse | 2023-10-24 22:00 | - | - | - | Sliver |
| 121.37.206.148:2083 | Malpulse | 2023-10-24 22:00 | - | - | - | CobaltStrike |
| 124.221.16.94:8888 | Malpulse | 2023-10-24 21:04 | - | - | - | Supershell |
| 123.249.87.1:8888 | Malpulse | 2023-10-24 20:03 | - | - | - | Supershell |
| 16.162.90.177:80 | Malpulse | 2023-10-24 19:00 | - | - | - | CobaltStrike |
| 117.50.185.69:82 | Malpulse | 2023-10-24 18:00 | - | - | - | CobaltStrike |
| 3.76.104.227:2376 | Malpulse | 2023-10-24 17:00 | - | - | - | Sliver |
| 129.226.92.29:443 | Malpulse | 2023-10-24 17:00 | - | - | - | CobaltStrike |
| az.fakebit.com:443 | Malpulse | 2023-10-24 16:00 | - | - | - | CobaltStrike |
| 174.138.16.222:111 | Malpulse | 2023-10-24 15:01 | - | - | - | CobaltStrike |
| www.dnnsaor.cyou:8443 | Malpulse | 2023-10-24 14:00 | - | - | - | CobaltStrike |
| service-ltwr9lk5-1319740527.sh.apigw.tencentcs.com:80 | Malpulse | 2023-10-24 14:00 | - | - | - | CobaltStrike |
| 3.90.105.242:443 | Malpulse | 2023-10-24 13:03 | - | - | - | IcedID |
| api-microsoft.httpdownload.com:443 | Malpulse | 2023-10-24 13:00 | - | - | - | CobaltStrike |
| 134.122.160.145:80 | Malpulse | 2023-10-24 13:00 | - | - | - | CobaltStrike |
| 20.97.19.69:80 | Malpulse | 2023-10-24 12:00 | - | - | - | CobaltStrike |
| 9wyqont1h5.execute-api.us-east-1.amazonaws.com:443 | Malpulse | 2023-10-24 11:00 | - | - | - | CobaltStrike |
| 120.79.64.164:53 | Malpulse | 2023-10-24 10:00 | - | - | - | CobaltStrike |