Skip to content

Commit 53c260b

Browse files
authored
add indicators related to infection chain found at 185.156.72.2 (#821)
* add indicators related to infection chain found at 185.156.72.2 * add related steam profiles used to relay c2 addresses * add 193.41.226.231/32
1 parent 7dbfd78 commit 53c260b

File tree

7 files changed

+147
-0
lines changed

7 files changed

+147
-0
lines changed

IP-addr.cidr.in-addr.arpa

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -34,6 +34,7 @@
3434
32.150.5.153.43
3535
32.154.197.137.79
3636
32.156.180.51.49
37+
32.157.96.254.185
3738
32.157.99.153.43
3839
32.16.215.131.45
3940
32.16.40.130.43
@@ -55,14 +56,17 @@
5556
32.186.60.153.43
5657
32.188.34.139.235
5758
32.188.87.153.43
59+
32.191.226.60.62
5860
32.191.251.119.160
5961
32.193.186.51.49
6062
32.194.13.130.43
6163
32.195.250.61.49
6264
32.195.41.244.156
65+
32.196.72.156.185
6366
32.197.44.252.47
6467
32.197.7.252.47
6568
32.198.72.153.43
69+
32.2.72.156.185
6670
32.20.8.153.43
6771
32.202.190.137.45
6872
32.205.98.253.47
@@ -80,7 +84,9 @@
8084
32.224.120.251.47
8185
32.225.3.181.5
8286
32.229.95.3.192
87+
32.231.106.12.49
8388
32.231.139.205.154
89+
32.231.226.41.193
8490
32.231.51.76.80
8591
32.236.187.106.170
8692
32.236.194.253.47
@@ -128,9 +134,11 @@
128134
32.67.138.166.43
129135
32.67.26.252.47
130136
32.68.97.174.184
137+
32.69.207.83.77
131138
32.70.121.148.45
132139
32.70.186.51.49
133140
32.72.80.153.43
141+
32.8.72.156.185
134142
32.81.83.252.47
135143
32.85.59.153.43
136144
32.86.76.153.43

IP-addr.cidr.list

Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,13 +23,19 @@
2323
181.215.205.242/32
2424
184.174.97.59/32
2525
184.174.97.68/32
26+
185.156.72.196/32
27+
185.156.72.2/32
28+
185.156.72.8/32
29+
185.254.96.157/32
30+
185.80.128.14/32
2631
185.81.115.28/32
2732
192.142.18.243/32
2833
192.3.55.217/32
2934
192.3.95.229/32
3035
193.143.1.160/32
3136
193.143.1.54/32
3237
193.233.72.58/32
38+
193.41.226.231/32
3339
198.11.175.44/32
3440
198.11.183.177/32
3541
198.244.236.18/32
@@ -115,6 +121,7 @@
115121
47.90.161.114/32
116122
47.90.228.106/32
117123
47.90.248.150/32
124+
49.12.106.231/32
118125
49.51.180.156/32
119126
49.51.184.146/32
120127
49.51.186.193/32
@@ -128,7 +135,9 @@
128135
5.182.210.39/32
129136
51.222.104.17/32
130137
61.28.233.21/32
138+
62.60.226.191/32
131139
69.49.234.138/32
140+
77.83.207.69/32
132141
79.137.197.154/32
133142
8.221.101.91
134143
8.221.106.55/32

IP-addr.in-addr.arpa

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -34,6 +34,7 @@
3434
150.5.153.43
3535
154.197.137.79
3636
156.180.51.49
37+
157.96.254.185
3738
157.99.153.43
3839
16.215.131.45
3940
16.40.130.43
@@ -54,15 +55,18 @@
5455
183.121.253.47
5556
186.60.153.43
5657
188.87.153.43
58+
191.226.60.62
5759
191.251.119.160
5860
192.3.55.217
5961
193.186.51.49
6062
194.13.130.43
6163
195.250.61.49
6264
195.41.244.156
65+
196.72.156.185
6366
197.44.252.47
6467
197.7.252.47
6568
198.72.153.43
69+
2.72.156.185
6670
20.8.153.43
6771
202.190.137.45
6872
205.98.253.47
@@ -78,7 +82,9 @@
7882
224.120.251.47
7983
225.3.181.5
8084
229.95.3.192
85+
231.106.12.49
8186
231.139.205.154
87+
231.226.41.193
8288
231.51.76.80
8389
235.139.34.188
8490
236.187.106.170
@@ -127,9 +133,11 @@
127133
67.138.166.43
128134
67.26.252.47
129135
68.97.174.184
136+
69.207.83.77
130137
70.121.148.45
131138
70.186.51.49
132139
72.80.153.43
140+
8.72.156.185
133141
81.83.252.47
134142
85.59.153.43
135143
86.76.153.43

IP-addr.list

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,6 +23,10 @@
2323
181.215.205.242
2424
184.174.97.59
2525
184.174.97.68
26+
185.156.72.196
27+
185.156.72.2
28+
185.156.72.8
29+
185.254.96.157
2630
185.80.128.14
2731
185.81.115.28
2832
188.34.139.235
@@ -32,6 +36,7 @@
3236
193.143.1.160
3337
193.143.1.54
3438
193.233.72.58
39+
193.41.226.231
3540
198.11.175.44
3641
198.11.183.177
3742
198.244.236.18
@@ -114,6 +119,7 @@
114119
47.90.161.114
115120
47.90.228.106
116121
47.90.248.150
122+
49.12.106.231
117123
49.51.180.156
118124
49.51.184.146
119125
49.51.186.193
@@ -127,7 +133,9 @@
127133
5.182.210.39
128134
51.222.104.17
129135
61.28.233.21
136+
62.60.226.191
130137
69.49.234.138
138+
77.83.207.69
131139
79.137.197.154
132140
8.221.101.91
133141
8.221.106.55

add-domain

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -59,6 +59,7 @@ discord.lossantossanto1.repl.co
5959
socialearn.co
6060
t.co
6161
3dmegastructures.com
62+
16.16.4t.com
6263
5399-coinbase.com
6364
8vjejn.com
6465
8vpro.com

0 commit comments

Comments
 (0)