Cyber Threat Intelligence Analytics
Last updated: 2026-01-01T02:30:15
IOCs seen in multiple reports - potential threat actor overlap or shared infrastructure
| IOC | Type | Seen In | Reports |
|---|---|---|---|
ntdsutil.exe |
DOMAINS | 2 reports | Unit42 Blogs - URL Test Run, CISA PDF Reports - Test Run |
powershell.exe |
DOMAINS | 2 reports | Unit42 Blogs - URL Test Run, CISA PDF Reports - Test Run |
rundll32.exe |
DOMAINS | 2 reports | Unit42 Blogs - URL Test Run, CISA PDF Reports - Test Run |
system.net |
DOMAINS | 2 reports | Unit42 Blogs - URL Test Run, CISA PDF Reports - Test Run |