Cisco Coverage for 'Magic Hound'
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Dns - T1071.004 Dns - T1590.002 Domains - T1583.001 Domains - T1584.001 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 |
Common Information
Type | Value |
---|---|
UUID | 45f15434-2b82-4867-8af6-9d8ac4f9844a |
Fingerprint | a0660d99c520dfa9 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Feb. 16, 2017, 8:22 p.m. |
Added to db | Oct. 9, 2022, 4:12 p.m. |
Last updated | Nov. 14, 2024, 2:04 p.m. |
Headline | Vulnerability Information |
Title | Cisco Coverage for 'Magic Hound' |
Detected Hints/Tags/Attributes | 18/2/24 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://blog.talosintelligence.com/2017/02/magic-hound.html |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 904 | snort.org |
|
Details | Domain | 3 | analytics-google.org |
|
Details | Domain | 2 | microsoftexplorerservices.cloud |
|
Details | Domain | 2 | msservice.site |
|
Details | Domain | 3 | service.chrome-up.date |
|
Details | Domain | 3 | service1.chrome-up.date |
|
Details | Domain | 2 | servicesystem.serveirc.com |
|
Details | Domain | 2 | syn.timezone.live |
|
Details | Domain | 2 | timezone.live |
|
Details | Domain | 2 | www.microsoftsubsystem.com-adm.in |
|
Details | Domain | 2 | www1.chrome-up.date |
|
Details | Domain | 2 | www3.chrome-up.date |
|
Details | Domain | 2 | www5.chrome-up.date |
|
Details | Domain | 2 | www7.chrome-up.date |
|
Details | File | 1 | w32.db |
|
Details | IPv4 | 2 | 104.218.120.128 |
|
Details | IPv4 | 1 | 104.238.184.252 |
|
Details | IPv4 | 3 | 139.59.46.154 |
|
Details | IPv4 | 1 | 45.56.123.129 |
|
Details | IPv4 | 1 | 45.58.37.142 |
|
Details | IPv4 | 2 | 45.76.128.165 |
|
Details | IPv4 | 2 | 69.87.223.26 |
|
Details | IPv4 | 1 | 89.107.60.11 |
|
Details | IPv4 | 3 | 89.107.62.39 |