{ "feedinfo": { "category": "Optiv Intelligence", "provider_url": "https://www.optiv.com", "display_name": "Optivized-CB-Feed-Domain", "name": "OptivizedIntelFeedDomain", "tech_data": "Contains Domains from Optiv's gTIC intelligence feeds where the intelligence source was scored with a confidence level of 85 or better. 95 is the highest possible confidence level for a monitored intelligence source.", "summary": "Optiv Intelligence - Domains", "icon_small": "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", "icon": "/9j/4AAQSkZJRgABAQAAAQABAAD/2wBDAAgGBgcGBQgHBwcJCQgKDBQNDAsLDBkSEw8UHRofHh0aHBwgJC4nICIsIxwcKDcpLDAxNDQ0Hyc5PTgyPC4zNDL/2wBDAQkJCQwLDBgNDRgyIRwhMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjIyMjL/wAARCABpAMgDASIAAhEBAxEB/8QAHAABAAICAwEAAAAAAAAAAAAAAAEHBggCAwUE/8QAQhAAAQMDAQMJAggOAwAAAAAAAQACAwQFEQYHEiETFCIxQVFhcYGRoTIzN0NScnWyFRckNUJTVHSSlLGzwdEWgsL/xAAYAQEBAQEBAAAAAAAAAAAAAAAAAQMCBP/EAB8RAQACAwEAAwEBAAAAAAAAAAABAgMSIRETFCIVMf/aAAwDAQACEQMRAD8Av9ERAREQEREBERAREQEREBERAREQEREBERAREQEREBERAREQFh901HdLddJqYsgLGOyzLDlzT1dqzBeTfLHHd4WkOEdRGOg/HDyPgtcVqxb9xxllraa/ievtoa6C4UrZ6d4c0jiO1p7j4qK+vgt1K6ed4AA6Lc8XHuCwCS1Xe3SktgqGH6cBJB9QpitN3uMwLoJ3E/OTkgD1P+Ft9envu3GP2L+ea9ezadRXS5XSGm3IAxx3n4YeDR19vosvXlWSyRWiA9ISVD/hyY9w8F6qxy2rNvzHG2Ktor+p6IiLJqIiICIiAiIgIiICIiAiIgIiICIiAiIgKHODGlziA0DJJPABSqN2va1nqblLpuhmMdHTgc7c045V5Gdwn6IGMjtPkgzy6bV9J2ud0HPZKyRpw7mkZe0H63AH0Km1bVtJ3WdsHPX0kjjhoq4+TBP1uLfaVXOltjtfebfHXXSsNuhlaHRQtj3pC09ROeDfLifJcdV7IK+x2+W4W2r/AAjTxNLpYnR7srW9pGODgPQ+agvwEOaCCCCMgjtUqkdkGtZ4rgzTVdMZKaZpNG55yY3AZLM/RIyR3EeKu5UYM7a5o9j3MNdPlpIP5LJ1j0Us2uaOe8NNwmbntdTSYHuVC2m2tvOqqa2PldE2rq+SMjRkty48cK0qnYTFzd5pL9KZwOgJoBuk+ODkKC0rXeLbe6QVVsrYaqHOC6J2cHuI6wfArldLnS2a11FxrXllNTs35HNaXEDyHErW3SN2rtIa4ga4ujxUikrIgeDm726c9+DxB8PFbF6hs7b/AKfrbS+Z0DaqMxmRrclvjhUYx+N7R37dP/Kyf6T8b2jv26f+Vk/0sVrdiFNSUFRUi/VDjDE6TdNO3jgZx1qttIWNmqNSUdpkqHU7agPJka0OLcMLuo+Sgvqh2paUuNfT0VNWTOnqJGxRg0zwC4nA4kcFmaq607GKa1XmiuLb5PI6lnZMGGnaA7dOcZyrRVGH1207S9uus1tqayZtVDLyL2ineQHZx14wswWrmrvlGu32kfvBbRoMUvO0bTlgukttuNTPFVRAFzRTvcMEZBBAwVkNuuFNdbdT19HJylNURiSN+MZB8OxVVtvsO9BQX+JnGM81qCPoniw+hyP+wX3bE75zuwVVmlfmShk34wT82/J9zt72hBaDnNYxz3kNa0ZJPUAsOodqOlblcKehpKueWoqJBHG0Uz+kSeHHHV4rjtSvn4E0PVtjfu1Fb+SxYPHpfCPo0O9yrvYrYee6gqLzKzMNAzk4s/rXj/Dc/wAQQXwiIgIiICIiAtW3hlRtKc24/FyXkife7uW45W0i1/2uaTntOoJL3BG42+vdvPe35qbtB7t7rB78qSNgE6xgqmtLbaIqe3x0moqaoklibuirgAcZAOreaSOPiOvwXHVe2aOrt8tFp2nnifK0tdVzgNLAevcaCePiepX0YHbQyDaVStt/xbLwGw7v0eWwPTC2jVBbINJTXK+x36oiLaChJ5Fzh8bLjAx3huck9+PFX6pA1OtFyZZ9V0tzkjdIylrOVcxpwXAOPAZVqVW3Wl5u/mdjqDPjoctK0MB8cZKq+wUEF01nQ0FU0up6mt5OQNdglpcc8R1K9I9kWjo3hxoJngfovqZMH3oim9IWiu1hriF7mukHORV1swGGtG9vHyJPADx8Fs6vitlpt9mpBS22jhpYBx3Im4ye8958SvtVV8V5/Mdw/dpPula67J/lEtH1Zf7TlsVefzHcP3aT7pWuuyf5RLR9WX+05SRsuiIqNXNXfKNdvtI/eC2jWrmrvlGu32kfvBbRqQPM1DZ4r/p6utUuA2piLA4/ou62n0IB9Fr3s9u0umNf0rarMTZJHUVU0nG6SccfJ4C2XWvO16wm06x5/E3dguTeWBHZK3Af/wCT6lJHftnvvP8AVMVsjdmG3RdID9Y/BPsbu+0q19n1g/47oyhpJGbtTK3l6jv338cegwPRUdom1z6w2gU7q0mccoayse4fCDTnj5u3R6rZlIBERUEREBERAXVU0sFbTSU1VDHNBK3dfHI0Oa4dxBXavA1Xq2g0nb2z1WZZ5MiCnYelIR/QDtK6pS17a1j2XNr1pG1p4xK6bE7DVzuloKyroA455NpEjB5b3Ee1Tatilgo5my19VVXDdORG4iNh8w3ifasHuW1HVFwnJgq2UUZPRip4x/UgkrlbNqWp7fODUVLK6IHpRVEYB/iaAR717/5ebz3jw/0sPvnV+U9PDSU8dPTRMhhjbusjjaGtaO4ALtXhaW1XQartxqaTMcsZDZoHnpRn/IPYV7q8FqWpbW0de6tovG1f8V7bNkNmtd8prrFcK981PPy7WPczdJznB6PUrCRFy6EREHVVU7aukmpnkhssboyR1gEYWD6c2U2jTN7prrS11dLNThwayUs3Tlpbxw0d6z1EBERBXtz2RWa6Xypustwr2TVE/LuYxzN0HOcDo5wrCREBY9rDSFFrG2RUdXLJAYZRLHLEBvNOCCOPYQVkKIMT0ZoKg0Y6rkpaiapmqd0OkmDQWtGeAwO85WWIiAiIgIiICIiAqU1npPV+pNWVVW22PNKH8jTudMwBsY4A43sjPF3qrrRb4M9sFtqx1hnwVzV1tPHgaa0ja9M0EcNNTsfUbo5Wpc0F8ju057B4BcdUaPtmp6CSKeCOOr3TyNS1uHsd2ce0d4WQouPlvvv7138VNNPOKX0PpXV2m9V01VJbHtpHkw1JEzCCw9uN7PA4PoroRF3nz2z22tHXODBXDXWs8ERFg2EREBERAREQEREBERAREQEREBERARQiCUUIglFCIJRQiCUUIglFCIJRQiCUUIglFCIJRQiCUUIglFCIJRQiD//Z" }, "reports": [ { "tags": [ "malware", "intel" ], "timestamp": 1715896897, "iocs": { "dns": [ "branter.tk", "duke6.tk", "wekanda.tk", "sanitar.ml", "crusider.tk", "bronerg.tk", "abissnet.net", "marksidfgs.ug", "skategirlchina.com", "script.google.com", "seoservicesiox.web.app", "noisy-block-aa73.oauth-convercaation.workers.dev", "bruiserbodies.com", "login-ourtime.members-datings.workers.dev", "youn.bxxnskkdkdkrkrnfnf.workers.dev", "nlrxh5.webwave.dev", "airhobi.com", "litby.us", "hubvera.ac.ug", "maile-login-4a46.wsq64551121.workers.dev", "mistitis.ug", "fir-8da4d.firebaseapp.com", "mail2.goggle.workers.dev", "mail3.goggle.workers.dev", "mail1.goggle.workers.dev", "m3agence.web.app", "m3agence.firebaseapp.com", "m4agence.web.app", "m4agence.firebaseapp.com", "mail11.goggle.workers.dev", "reactivate-device-au.web.app", "reactivate-device-au.firebaseapp.com", "d-outlook3930034.web.app", "d-outlook3930034.firebaseapp.com", "reactivate-device.firebaseapp.com", "reactivate-device.web.app", "discoveronline.discoverloginacces.workers.dev", "omninstante.pt", "detectioncenter-case100055111.web.app", "detectioncenter-case100052351.web.app", "caissedepargnecionga.firebaseapp.com", "caissedepargnecionga.web.app", "caisse-depargneregional.firebaseapp.com", "caisse-depargneregional.web.app", "empty-boat-5019.dgentile8443.workers.dev", "xft6kit4fj5mnzsdt75ejf2spriszgaqpujclwimvfz7gtangi72suad.onion", "2cedhihsepjtcpwuwes77cle5wb6ml7e5ys6ivsb4a4ivlrw2vc4wwad.onion", "red6djrs7fbkchy3.onion", "bgumuduxnkkecg3b.onion", "ba2xy52xrtagkrh3.onion", "fndqgtdkj4v6g4aq.onion", "225ppqutwykx2or3.onion", "dppnmjep33rf6ct3.onion", "4ktbtv54flfhs6ea.onion", "4r7hlqzkxl5xtjxn.onion", "colormiagi.com", "cloud.espcapital.pro", "ancient-salad-4674.mmrctliacetgliue504.workers.dev", "bestfindthetruth.com", "fessionalwork.com", "gesturefavour.com", "goldenunder.com", "singamofing.com", "singnode.com", "togetheroffway.com", "troublendsef.com", "mod_rtf.so", "mod_rft.so", "update_v2.sh", "get_fs_info.pl", "test1.sh", "update_v35.sh", "1.sh", "aacore.sh", "appcheck.sh", "update_v31.sh", "core.sh", "test.sh", "aneria.net", "armpress.net", "ceriossl.info", "global-news-world.com", "global-world-news.net", "note.goldenunder.com", "lt76ux.confenos.shop", "2e6veme8xs.bmssystemg188.us", "newsbizshow.net", "ptzbubble.shop", "criticimfreedom.site", "megamodel.studio", "instructables.live", "outlookmicrosoftonline.com", "nirsoft.app", "nirsoft.ink", "mentalfloss.live", "myfridgefood.live", "transportorganizationil.shop", "metatransfer.online", "msofficesign.com", "fastanalytics.live", "prostatistics.live", "fastanalizer.live", "europetourtravels.world", "europetourtravels.link", "oauth2.online", "oauth2.live", "loginlive.formsmicrosoftoffice.com.oauth2.live", "login.microsoftonilne.com.oauth2.online", "microsoftfice.ddns.net", "ghostrider.serveirc.com", "dan.det-ploshadka.com", "ssl.articella.com", "ssl.e-novauto.com", "yum.luxyries.com", "uspspoh.com", "aflac-hr.com", "ustons.com", "cdn27.space", "nanoshield.pro", "upd5.pro", "cdn46.space", "amica-hr.com", "cdn43.space", "lexisnexis.day", "cdn1124.net", "cdn25.space", "cdn30.space", "cdn32.space", "cdn33.space", "cdn34.space", "cdn37.space", "cdn40.click", "cdn41.space", "cdn42.space", "cdn45.space", "eprst431.boo" ] }, "title": "Optiv High Confidence Domains", "score": 100, "link": "https://www.optiv.com", "id": "12345" } ] }