2023-DAY14-HW威胁情报分享

admin 2024年10月7日18:16:56评论19 views字数 2881阅读9分36秒阅读模式

2023-DAY14-HW威胁情报分享

WPS

2023-DAY14-HW威胁情报分享

广联达

2023-DAY14-HW威胁情报分享

NETGEAR XR300缓冲区溢出漏洞

2023-DAY14-HW威胁情报分享

Ffmpeg代码执行漏洞

2023-DAY14-HW威胁情报分享

PHPOK v.5.4

2023-DAY14-HW威胁情报分享

中科网威

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

2023-DAY14-HW威胁情报分享

威胁IP:

2023/8/21
威胁ip汇总

93.104.10.77
167.114.101.80
109.248.6.65
195.191.219.131
108.14.239.14
192.99.37.133
20.227.158.181
117.65.110.105
47.98.238.13
223.215.171.43(安徽省,漏洞利用

122.232.68.185(浙江省,漏洞利用

39.144.92.44(内蒙古自治区,漏洞扫描)

103.49.251.114(漏洞利用)

50.31.21.5(美国伊利诺伊州,漏洞利用)

2c06067fdbf73463aa3aec7b1dd76006(MD5,钓鱼样本,【XXX研究生.pdf...........................。.exe】)

service-le5zucun-1318291189.bj.apigw.tencentcs.com(C2,云函数,钓鱼样本)

service-tencentcloud-1319809856.sh.apigw.tencentcs.com(C2,云函数,钓鱼样本)

182.42.121.141(内蒙古自治区,漏洞攻击)

123.57.150.145(阿里云,C2,钓鱼样本【发件人邮箱:[email protected]】)

692f4c6da61e2e054e593da6aa3b11b6(MD5,钓鱼样本,WPS漏洞,【2023年企业薪资调整通知.docx】)
103.49.251.114
47.93.247.53
123.56.74.132
89.248.163.117
89.248.163.57
81.70.186.35

IP 地址
117.61.193.144
117.61.193.208
117.61.193.16
117.61.192.208
117.61.192.16
域名/URL
117.61.193.144
117.61.193.208
117.61.193.16
117.61.192.208
117.61.192.16

128.199.30.10
159.89.207.96
110.87.248.221
139.59.159.36
165.22.212.202
112.192.229.101
143.198.145.142
167.71.226.110
128.199.17.130
46.101.244.63

58.47.6.160
58.52.156.119
58.52.155.139
58.52.155.60
58.47.21.149
58.52.157.239
59.14.179.68
59.126.25.181
58.229.178.134
59.44.25.227
59.127.74.7
59.127.225.61
58.27.95.2
59.21.216.144
59.182.4.185
59.103.236.31
59.182.144.6
59.18.40.102
59.178.179.130
59.178.172.245
58.165.139.150
59.18.150.155
59.56.136.111
59.178.7.217
59.80.54.92
58.18.161.118
58.18.161.112
58.19.51.46
58.19.50.95
58.19.50.16
58.19.48.236
59.0.197.79
58.176.84.194
58.65.90.138
58.19.34.7
58.216.15.224
59.110.143.221
59.1.68.231
59.88.40.251
59.20.40.42
59.178.16.248
59.178.21.235
59.110.143.127
59.7.18.2
59.20.169.85
59.182.51.218
59.177.109.255
59.110.168.158
59.24.45.11
59.58.43.21
58.152.140.232
58.153.199.109
54.191.125.231
54.167.78.229
51.75.78.120
54.223.146.41
54.223.123.52
54.223.120.121
54.223.118.210
54.222.247.252
54.222.233.132
54.222.216.123
54.222.212.129
54.222.196.235
54.222.172.155
54.222.143.250
54.222.137.216
54.188.70.111
54.170.3.235
52.81.4.98
54.202.103.188

攻击ip
60.188.11.39
60.188.9.171
60.188.11.45
60.188.11.14
60.188.11.82
60.188.9.177
60.188.9.160
60.188.9.174
60.182.249.237
60.182.249.226
60.182.249.178
60.182.249.155
60.182.249.146
60.182.249.125
60.174.0.22
60.174.0.44
60.152.56.243
60.182.249.184
60.188.10.253
60.188.10.60
60.188.10.148
60.167.172.87
60.188.10.2
60.174.0.234
60.174.1.109
60.167.27.37
60.188.10.209
60.167.174.162
60.188.10.54
60.188.10.159
60.188.10.201
60.174.1.163
60.188.10.204
60.188.10.188
60.188.10.239
60.188.11.102
60.174.0.45
60.188.10.242
60.188.10.135
60.188.10.173
60.167.173.139
60.174.1.68
60.174.1.253
60.174.1.244
60.188.10.8
60.188.10.6
60.178.207.104
60.178.206.71
60.13.138.117
60.174.0.187
60.167.91.58
60.182.249.45
60.182.249.72
59.16.140.133
58.52.182.150
59.99.131.245
58.52.164.4
58.52.164.132
58.241.55.167
58.241.55.166
58.239.145.201
59.99.129.229
59.96.104.242
58.87.89.139
58.87.89.213
58.87.96.177
58.87.88.219
58.87.88.159
58.52.182.207
58.52.182.188
58.52.180.106
58.52.171.132

原文始发于微信公众号(亿人安全):2023-DAY14-HW威胁情报分享

免责声明:文章中涉及的程序(方法)可能带有攻击性,仅供安全研究与教学之用,读者将其信息做其他用途,由读者承担全部法律及连带责任,本站不承担任何法律及连带责任;如有问题可邮件联系(建议使用企业邮箱或有效邮箱,避免邮件被拦截,联系方式见首页),望知悉。
  • 左青龙
  • 微信扫一扫
  • weinxin
  • 右白虎
  • 微信扫一扫
  • weinxin
admin
  • 本文由 发表于 2024年10月7日18:16:56
  • 转载请保留本文链接(CN-SEC中文网:感谢原作者辛苦付出):
                   2023-DAY14-HW威胁情报分享https://cn-sec.com/archives/1971653.html
                  免责声明:文章中涉及的程序(方法)可能带有攻击性,仅供安全研究与教学之用,读者将其信息做其他用途,由读者承担全部法律及连带责任,本站不承担任何法律及连带责任;如有问题可邮件联系(建议使用企业邮箱或有效邮箱,避免邮件被拦截,联系方式见首页),望知悉.

发表评论

匿名网友 填写信息