top of page
Threat Roundup for August 12 to August 19
C45-2022-08-20-8
Indicators of Compromise (IOC) List
Indicator of Compromise (IOC) | Date Published | IOC Type |
|---|---|---|
HKCU\SOFTWARE\ROHCSWFU
Value Name | 20/08/2022 | Win_Registry |
2c56f82b2109c74ffc9ac8bb6a75a4fadc7b5dbc8c6e4973dc576b4f6e44b3fd | 20/08/2022 | SHA-256 |
2b921630e3606ceded2567dd7c2665ff59d3894e8f17b0c4c515cfcfea9281f6 | 20/08/2022 | SHA-256 |
HKLM\SYSTEM\CONTROLSET001\SERVICES\MPSSVC
Value Name | 20/08/2022 | Win_Registry |
69e5f2613c4aad5956e83985743210ae058862c12e3d7f104537f6efd0aa1c51 | 20/08/2022 | SHA-256 |
6798aa4e8218c8783acab06e700b519eb31856ac0e46c6c82f5dfbf22e13ddb5 | 20/08/2022 | SHA-256 |
HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS | 20/08/2022 | Win_Registry |
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS
Value Name | 20/08/2022 | Win_Registry |
746617c675d2a770eab8c726ebc402418cebdbb8200734454baadd99caddf189 | 20/08/2022 | SHA-256 |
32a01832f4de0f17e438fed6be9f155d9fd30056133681c7474f0114a1731a9b | 20/08/2022 | SHA-256 |
2bbac09df0fbb667c042f25c8d4810a08d6a3129a57ec70363debad39f917bd2 | 20/08/2022 | SHA-256 |
5a45837812962153f5d480918eab77093394dd41c45c610ffd142461ab433668 | 20/08/2022 | SHA-256 |
2788aeb4b8ce3220bc2352ecf6f6dc6fc899934691e5f7778c160d43a654c752 | 20/08/2022 | SHA-256 |
HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN
Value Name | 20/08/2022 | Win_Registry |
763c7dd7964eaf334f7840f0b1c73340890b358f2e0892e455cb58b262828716 | 20/08/2022 | SHA-256 |
5e37715cc8a5d1b6c5bed437eea25da495285bb1386cf2aef2b5484fd6c30e69 | 20/08/2022 | SHA-256 |
5730f9ce8c84e6f1c153c247146ac1590fd989a73cdc9dce9d67594b33caf354 | 20/08/2022 | SHA-256 |
HKCU\SOFTWARE\SS
1
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS | 20/08/2022 | Win_Registry |
94.102.52.19 | 20/08/2022 | IPv4 |
HKLM\SYSTEM\CONTROLSET001\SERVICES\WUAUSERV
Value Name | 20/08/2022 | Win_Registry |
84055ce5bc4ef2bdf486e82e444e5665c73f4fe627a8734edc463b59f443bfcc | 20/08/2022 | SHA-256 |
29fbd2e07f2bcdac0a69364621df335bf899787c48353f7e448e302263d0cee1 | 20/08/2022 | SHA-256 |
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM
Value Name | 20/08/2022 | Win_Registry |
0ddf461f926f814d19696d3851f3673c10d69a15fa2d7cfac9552c3af9460c66 | 20/08/2022 | SHA-256 |
1d548c85594dc4b83ac1c69ac82da842dc68eac75f683aed693929c728c83184 | 20/08/2022 | SHA-256 |
377406362d74f2789685c3a0aa128312bf82b092f9c047a36fb1d62e22348a8d | 20/08/2022 | SHA-256 |
198.58.118.167 | 20/08/2022 | IPv4 |
149.202.248.0 | 20/08/2022 | IPv4 |
da37a954efc572ccd4f5f43912e1b041acce412d8f4cfac31a23349adb7e43c5 | 20/08/2022 | SHA-256 |
593d60c61df90a5de77d5ee31815eafd3c2657f1581cdd7fe36e74f72956a7e3 | 20/08/2022 | SHA-256 |
1d0d652abf31a5b4f9ecf5ee6d201b4d31e977f6fc769a34cd34a5468e362e14 | 20/08/2022 | SHA-256 |
1a201ba2922601f743606e4f8762e042355fb95704ae08f1e9d46539e9a9c53e | 20/08/2022 | SHA-256 |
HKCU\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS
Value Name | 20/08/2022 | Win_Registry |
50c108f9fc31557d55216dfe28b9eeac15fe5f1175a089ff196e1129d6ddf593 | 20/08/2022 | SHA-256 |
HKCU\SOFTWARE\TKQJXHIR
Value Name | 20/08/2022 | Win_Registry |
72.14.185.43 | 20/08/2022 | IPv4 |
HKCU\SOFTWARE | 20/08/2022 | Win_Registry |
HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES | 20/08/2022 | Win_Registry |
76578d8841dc939a7eaafb0740943988f084d18871e5e82d88a8474945c290a0 | 20/08/2022 | SHA-256 |
HKCU\SOFTWARE\PKBQSDOK
Value Name | 20/08/2022 | Win_Registry |
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN
Value Name | 20/08/2022 | Win_Registry |
4faa3a69a429a598863c9369d0b4d572fa01b5bbf567b0d76f5a42f596430003 | 20/08/2022 | SHA-256 |
80.82.65.199 | 20/08/2022 | IPv4 |
HKLM\SYSTEM\CONTROLSET001\SERVICES\WSCSVC
Value Name | 20/08/2022 | Win_Registry |
878a27d70fd8b04b70298f1e102053e02faeaab461a8455fdf843262118231ad | 20/08/2022 | SHA-256 |
23fec3f833e9a7ee790ea9cad1b205ade2036466282654b2e53f23516553b775 | 20/08/2022 | SHA-256 |
HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES
Value Name | 20/08/2022 | Win_Registry |
adbbf9cf8048f45fce2ad9fb1d681ea9334813a442d6d5b051cd11285fc71154 | 20/08/2022 | SHA-256 |
3ab978d7ba8cadbfa40ce0d1b6acb6922d6f7b2d8322f420bf03db0c44d94755 | 20/08/2022 | SHA-256 |
45.33.30.197 | 20/08/2022 | IPv4 |
bottom of page

