IoC (TT Malware Log)

Malware の IoC(Indicator)情報

◆注意◆ マルウェア解析専析家向けサイト

     FQDN, URL,IPアドレス等はそのまま掲載しています


** Caution ** Malware expert site

                    FQDN, URL, IP address etc. are posted as they are

Ursnif (2020/11/20)

【インディケータ情報】

■ハッシュ情報(Sha256) - Ursnif -

bd2fe3414b937a4c8aac6b2430b93e2435ff64908974dcb2b6b824fc41696466
4831d4c2543e27e164599bd88ca1ec9d9e8bd34a095e635c8d8c05a6c0399948
5cf36c582304c9551af42bf602b930ce37305512f15a6993c2085b44451d767f
035714518e248530b031257a62a4bd9a8066e28277f223b2264151ba0dcb9cfa
aa08751e0bcbfbf33376d5204bb76707a75a9155be508d10ffdcf79d75f2bafd
3c51529e11f3cff24bca191bb63e2100c0bbfb2d4aadf811eba7392378420450
d43fcc82467726e27de171718f95ba5bf198d02c8bfd5bf8dab0da67530640c9
ea2ba17ff3b4ad2066ced30a7d8d0025348e24f858b86658ccce5774269f52a1
23ed8b64ae6587371438f1f60c37dd3015d21d3e16e7391ad4ddd736986bf4a4
570518b7a38943c0d5ca6af87051096235699c3d81eb6f473b7ce0257719d6e4
224ed36aa31c2428abb59779b0dbbfbcae9a3df84ed960e09e9353ebba9172d7
2503e31ca9c3e4ec6dc063aa9a1140b1303a9f66dd7b5b7140d5be9d235f6db1
1d0bcba0c91e94fb4e64ce98853b7f5392affc940c77b8c339d87893d74bfb5a
732706ada05b6f361c26720ac8849113a8cba7bd886db27dd3c60dfae3736b80
b783e059eff33edde6a6be28b4db220f44a7718c0ff186cf5f65df298c2dae35
7610203f9278087ff6c72f945e01f2881fe58bb21bb0148a6605db310396e8a5
f2f64d0e363e61041580a6484fcd7031a7afc9862f860d0c9e594b746e82beb5
025b1406c05c082cdfd4449136451fafbae0a578bd89882acd0a551a6d3cc2b2
7981a3655c51c9af43baef37e26ae0705ac6bba4707d3e6f388032369ef40aeb
8a346e3b7a4baf9e551acaaa2b9ad5b83677e0b363b7a24f3aa925eb7e3e98a5
8194ef8e918c5e9eb4a63ba6429b647e1a75f85e304d723f90fbecbbbd3132b0
605a2b40806b1fad19321895150cf5506e4986812a39ac768209fc2dbec9d047
2ce4ca4579e0c6384f70d4d471451b9de976dbbabf2273bb04fcf360228617d3

(以上は Talos(CISCO)の情報: 引用元は https://blog.talosintelligence.com/2020/11/threat-roundup-1113-1120.html )


【検索】

google: bd2fe3414b937a4c8aac6b2430b93e2435ff64908974dcb2b6b824fc41696466
google: 4831d4c2543e27e164599bd88ca1ec9d9e8bd34a095e635c8d8c05a6c0399948
google: 5cf36c582304c9551af42bf602b930ce37305512f15a6993c2085b44451d767f
google: 035714518e248530b031257a62a4bd9a8066e28277f223b2264151ba0dcb9cfa
google: aa08751e0bcbfbf33376d5204bb76707a75a9155be508d10ffdcf79d75f2bafd
google: 3c51529e11f3cff24bca191bb63e2100c0bbfb2d4aadf811eba7392378420450
google: d43fcc82467726e27de171718f95ba5bf198d02c8bfd5bf8dab0da67530640c9
google: ea2ba17ff3b4ad2066ced30a7d8d0025348e24f858b86658ccce5774269f52a1
google: 23ed8b64ae6587371438f1f60c37dd3015d21d3e16e7391ad4ddd736986bf4a4
google: 570518b7a38943c0d5ca6af87051096235699c3d81eb6f473b7ce0257719d6e4
google: 224ed36aa31c2428abb59779b0dbbfbcae9a3df84ed960e09e9353ebba9172d7
google: 2503e31ca9c3e4ec6dc063aa9a1140b1303a9f66dd7b5b7140d5be9d235f6db1
google: 1d0bcba0c91e94fb4e64ce98853b7f5392affc940c77b8c339d87893d74bfb5a
google: 732706ada05b6f361c26720ac8849113a8cba7bd886db27dd3c60dfae3736b80
google: b783e059eff33edde6a6be28b4db220f44a7718c0ff186cf5f65df298c2dae35
google: 7610203f9278087ff6c72f945e01f2881fe58bb21bb0148a6605db310396e8a5
google: f2f64d0e363e61041580a6484fcd7031a7afc9862f860d0c9e594b746e82beb5
google: 025b1406c05c082cdfd4449136451fafbae0a578bd89882acd0a551a6d3cc2b2
google: 7981a3655c51c9af43baef37e26ae0705ac6bba4707d3e6f388032369ef40aeb
google: 8a346e3b7a4baf9e551acaaa2b9ad5b83677e0b363b7a24f3aa925eb7e3e98a5
google: 8194ef8e918c5e9eb4a63ba6429b647e1a75f85e304d723f90fbecbbbd3132b0
google: 605a2b40806b1fad19321895150cf5506e4986812a39ac768209fc2dbec9d047
google: 2ce4ca4579e0c6384f70d4d471451b9de976dbbabf2273bb04fcf360228617d3


【VT検索】

https://www.virustotal.com/gui/file/bd2fe3414b937a4c8aac6b2430b93e2435ff64908974dcb2b6b824fc41696466
https://www.virustotal.com/gui/file/4831d4c2543e27e164599bd88ca1ec9d9e8bd34a095e635c8d8c05a6c0399948
https://www.virustotal.com/gui/file/5cf36c582304c9551af42bf602b930ce37305512f15a6993c2085b44451d767f
https://www.virustotal.com/gui/file/035714518e248530b031257a62a4bd9a8066e28277f223b2264151ba0dcb9cfa
https://www.virustotal.com/gui/file/aa08751e0bcbfbf33376d5204bb76707a75a9155be508d10ffdcf79d75f2bafd
https://www.virustotal.com/gui/file/3c51529e11f3cff24bca191bb63e2100c0bbfb2d4aadf811eba7392378420450
https://www.virustotal.com/gui/file/d43fcc82467726e27de171718f95ba5bf198d02c8bfd5bf8dab0da67530640c9
https://www.virustotal.com/gui/file/ea2ba17ff3b4ad2066ced30a7d8d0025348e24f858b86658ccce5774269f52a1
https://www.virustotal.com/gui/file/23ed8b64ae6587371438f1f60c37dd3015d21d3e16e7391ad4ddd736986bf4a4
https://www.virustotal.com/gui/file/570518b7a38943c0d5ca6af87051096235699c3d81eb6f473b7ce0257719d6e4
https://www.virustotal.com/gui/file/224ed36aa31c2428abb59779b0dbbfbcae9a3df84ed960e09e9353ebba9172d7
https://www.virustotal.com/gui/file/2503e31ca9c3e4ec6dc063aa9a1140b1303a9f66dd7b5b7140d5be9d235f6db1
https://www.virustotal.com/gui/file/1d0bcba0c91e94fb4e64ce98853b7f5392affc940c77b8c339d87893d74bfb5a
https://www.virustotal.com/gui/file/732706ada05b6f361c26720ac8849113a8cba7bd886db27dd3c60dfae3736b80
https://www.virustotal.com/gui/file/b783e059eff33edde6a6be28b4db220f44a7718c0ff186cf5f65df298c2dae35
https://www.virustotal.com/gui/file/7610203f9278087ff6c72f945e01f2881fe58bb21bb0148a6605db310396e8a5
https://www.virustotal.com/gui/file/f2f64d0e363e61041580a6484fcd7031a7afc9862f860d0c9e594b746e82beb5
https://www.virustotal.com/gui/file/025b1406c05c082cdfd4449136451fafbae0a578bd89882acd0a551a6d3cc2b2
https://www.virustotal.com/gui/file/7981a3655c51c9af43baef37e26ae0705ac6bba4707d3e6f388032369ef40aeb
https://www.virustotal.com/gui/file/8a346e3b7a4baf9e551acaaa2b9ad5b83677e0b363b7a24f3aa925eb7e3e98a5
https://www.virustotal.com/gui/file/8194ef8e918c5e9eb4a63ba6429b647e1a75f85e304d723f90fbecbbbd3132b0
https://www.virustotal.com/gui/file/605a2b40806b1fad19321895150cf5506e4986812a39ac768209fc2dbec9d047
https://www.virustotal.com/gui/file/2ce4ca4579e0c6384f70d4d471451b9de976dbbabf2273bb04fcf360228617d3




【ブログ】

◆Threat Roundup for November 13 to November 20 (Talos(CISCO), 2020/11/20)
https://blog.talosintelligence.com/2020/11/threat-roundup-1113-1120.html
https://storage.googleapis.com/blogs-images/ciscoblogs/1/2020/11/20201120-tru.json_.txt
https://malware-log.hatenablog.com/entry/2020/11/20/000000_9


【関連まとめ記事】

全体まとめ
 ◆脅威情報 (まとめ)

◆Talos の 1 週間における脅威のまとめ (まとめ)
https://malware-log.hatenablog.com/entry/Talos_Threat