diff --git a/Iran/APT/Muddywater/2020-07-02/CSV/IOC-Muddywater-2020-07-02.csv b/Iran/APT/Muddywater/2020-07-02/CSV/IOC-Muddywater-2020-07-02.csv new file mode 100644 index 0000000..aeaf904 --- /dev/null +++ b/Iran/APT/Muddywater/2020-07-02/CSV/IOC-Muddywater-2020-07-02.csv @@ -0,0 +1,27 @@ +Date,Type,Indicator,Description +2020-06-02,SHA256,9f1aeddcae9655772326a078b52b975b8d1117344fbac70791e3b771169a87c1,New Health Protocols.v13.exe +2020-06-02,SHA256,1f38eea8caf63ff911fa97f2a20328796a62fc760f24c7e6347753e8112bf92d,Lojupazhyxy.exe +2020-06-02,SHA256,98eedfc49e4de97b07db2c658f13e12acd4368f6edf15aaeca703a8d9708e8d9,Jyhynyjegu.pdf +2020-06-02,IP,185.244.149.202,IP C2 +2020-06-02,URL,http://185.244.149.202/,URL C2 +2020-06-10,SHA256,4a06605073504d70d71744e0dcdc08908ac5c1ac46bd42fec417afe2c58e02b4,UNRWA-ServerRequest1145.exe +2020-06-10,SHA256,deb25177464fb637e00aea4d87ffce2a3e4041ffe84747b8951999748f761757,Raqygirula.exe +2020-06-10,SHA256,b879d1fb6ed0c32eac85966e8e47334a0d207ce9067d5caae1552b23a3d3c4aa,Jawaejifahi.pdf +2020-06-10,IP,185.82.202.70,IP C2 +2020-06-10,URL,http://185.82.202.70/,URL C2 +2020-06-16,SHA256,bee97740637683931fa603f441358180a486a459aa54638c7d9f689c5e361e8f,Corona Virüsü ve Siber Savunma8.exe +2020-06-16,SHA256,92cb75c15da69fd6ef9368c03fd5001778d5fa1f7b024d63c84c13f501d5acd5,Nodycohaeta.exe +2020-06-16,SHA256,da06adfd2c3be0de51ddae60673c3e6d0d5a33d6fa5b8cb29f03d47c7cbff014,Kytuqasylu.pdf +2020-06-16,SHA256,b08c52cc398d2b8979822928efa3fedcc7e92e66e04ccf7b0b8f927569c531d2,Invite3.exe +2020-06-16,SHA256,7408075bbf433da260d2823213ddde1b2d47b5c89419bab4c6f1480f9d7976c8,Pehixelaepae.exe +2020-06-16,SHA256,8777c70517158cbab0c6bb6178001e3e84ccec03128e4b71f1cb75244d78c00e,Jejytylavi.pdf +2020-06-16,SHA256,39368534dc40589efd70f71e222b76c8a0cdb0bbf84248085d4dea4b285f9e41,announcement.exe +2020-06-16,SHA256,ed30edac02bf2b46f18e539665cb2b9d2c6ff5b8850bd98987b82a36c05167e2,Cujaeraecamo.exe +2020-06-16,SHA256,b9a0d2a6ac3b775300a74b56fde4b47f02bd09037ac1a655c5e93aae9143137a,Kopexaekaeru.pdf +2020-06-16,IP,185.106.122.72,IP C2 +2020-06-16,URL,http://185.106.122.78/,URL C2 +2020-06-25,SHA256,13c4055efd92dab5788c8bf8a437366b1bbb9a8324fdebb8480fed157125294f,13c4055efd92dab5788c8bf8a437366b1bbb9a8324fdebb8480fed157125294f.exe +2020-06-25,SHA256,72f487068c704b6d636ddd87990e25ce8cd5940244e581063f4c54afa4438212,Jewypyryhi.exe +2020-06-25,SHA256,2bad8456eec1c7e4b9153ec3abc7859cc5bd781dddd26e314150448651d2e5d3,Lodolutaelae.pdf +2020-06-25,IP,185.82.202.66,IP C2 +2020-06-25,URL,http://185.82.202.66/,URL C2