不正URLへのアクセス、不正メールの受信
-
メール受信した
弊社お客様0社 URLアクセスした
弊社お客様1社 -
2026/05/27
※2026/05/27 更新
マルウェア感染させると考えられるURLを検知(2026/05/27)
■IoC(※1)
| Type: | IOC: | Signature: |
|---|---|---|
| URL | hxxps://mahcr[.]banhidileadershipacademy[.]hu/80a6b38f-d0c5-444d-b99f-42a5c2ea219c hxxps://dynhc[.]balintpiroska[.]hu/8375dfce-f3e3-4729-ac0a-eb5b869b0ed0 hxxps://jwqnk[.]bbautokozmetika[.]hu/c72a1f15-b3bc-42a8-a644-a213b226cd47 hxxps://xybtn[.]bartendersclub[.]net/02304fa5-d517-4c8a-8c5c-28c85e57205a hxxps://mrwqb[.]bartaenergetika[.]com/899e5776-2f18-4389-bd2d-67b44d115358 hxxps://aklze[.]bercibutor[.]hu/5c2f6759-671b-46e8-872e-0671fd1a0488 hxxps://odqtx[.]bbglobalbau[.]hu/b085475f-3e07-4592-b0d9-308c24016584 hxxps://zcrop[.]bernoe[.]hu/dde58c5d-ea59-4538-9490-4133a9503bd8 hxxps://vrifp[.]bergertetokft[.]hu/589b9ff0-510f-4248-9b02-d1bf6cf6813e hxxps://neypx[.]bmz[.]hu/321ddd16-64a3-43d6-aeb1-c613db8ff8b2 hxxps://miqhc[.]bmiroda[.]hu/09016948-1d50-4614-a072-c44cd5771ae4 hxxps://bczth[.]bertifolia[.]hu/b49ef12c-321d-4fba-a93b-9683282fe140 hxxps://eqgwn[.]aivallalkozo[.]hu/7544dfc7-91c6-48e8-b6b6-b7644403e300 hxxps://abmjl[.]bertifolia[.]hu/75a2f137-c7aa-4acf-b992-99237cdbd12c hxxps://ptnza[.]bni-ai[.]com/fee93181-065c-4499-af45-199a9a79a097 hxxps://fuluz[.]akonyvelod[.]hu/405282cb-7ac0-4cae-987f-bd54fdb1d270 hxxps://ilgte[.]aivallalkozok[.]hu/83fd96f1-a2b9-4c28-ad6f-1fe1db5eb03e hxxps://julya[.]bmz[.]hu/aa3f1358-3a51-49aa-ab70-758334c8e739 hxxps://vmpyw[.]almasiklima[.]hu/79c886ef-67c8-41dc-95da-43d74d0dcdbe hxxps://ohzmh[.]bninolimit[.]com/28f63c78-c36f-49c6-bb3e-0d92b2ea8107 hxxps://9awu4igb[.]cloud-lattice[.]digital/?ublib=2ff72def-ad07-45e5-b558-3c26db036a3f hxxps://acuon[.]bni-ai[.]com/1977d4e3-e910-48fc-9431-e64e363bf452 hxxps://bcfaxrtc[.]logic-compass[.]digital/?ublib=fc4c2afc-d641-4677-b313-959281dd5b4e hxxps://rrnek[.]bognartransport[.]hu/06dfa801-6992-4f5e-83f8-de1601c9348a hxxps://adxwe[.]boutiqbar[.]com/6d762073-c04e-436c-a416-6f8176e03e0e hxxps://oa4njxsv[.]byte-frontier[.]digital/?ublib=f9aaafce-1a12-4686-a8a9-aa01ff4e7f47 hxxps://mlbmb[.]bonuszugynokseg[.]hu/ca0b6882-153f-475e-af19-225b65068c00 hxxps://swhbk[.]bohochal[.]hu/68faedf6-b056-46d9-80d0-faf708414e32 hxxps://ggrze[.]brssolar[.]hu/ea4b46f1-f591-40fd-9507-a5baf7899c70 hxxps://nveth[.]brandbuilder[.]hu/0d753127-caf9-4aeb-8f42-a9b3288902eb hxxps://a7px1y1v[.]container-pulse[.]digital/?ublib=48e87da3-8794-4ffb-a89b-4f48bccd5691 hxxps://zpxfn[.]buborekjatszohaz[.]hu/15741499-af12-41eb-b1c5-5ad6ae3c9515 hxxps://ldeml[.]buborekjatszohaz[.]hu/c05d91eb-4527-4a5a-bbab-fb681e76f1a9 hxxps://xvceg[.]butoralberlet[.]com/714cad5f-b224-4cef-be0e-54d8c875215d hxxps://qgrqy[.]business360[.]hu/8830f003-13c1-4ac1-958d-ce6f439ac25c hxxps://vhfla[.]budapesthandmade[.]hu/733d568a-91fe-4206-8e7c-7e3ece4dafaa hxxps://j543wvuu[.]packet-orbit[.]digital/?ublib=d1f91b97-c0d3-4e3a-b77b-09ee5916c9cd hxxps://kaewe[.]caesarresidence[.]com/1a0fb36c-6f6a-48d0-bc07-87af2a0b4180 hxxps://topbo[.]cannatural[.]eu/4fc3e1d5-4515-466b-a767-857988d9032e hxxps://grrab[.]cannatural[.]cz/78972430-8b37-4477-8e4b-29dfac209b54 hxxps://fgpjr[.]vigaf[.]hu/ddb0a9ff-ad2f-4db0-a061-8acaf0ed4750 hxxps://h7cyp6bl[.]kernel-compass[.]digital/?ublib=c51d0d82-bc40-4c2a-8630-6d1feaa4782b hxxps://irrvh[.]ceremoniavezeto[.]hu/56d327b3-0068-495c-84e1-a4bc66f9e740 hxxps://pjvro[.]cannaturalgroup[.]com/61154fc4-b79b-484b-936a-953488396e8b hxxps://kqrde[.]vilagom[.]hu/1a952f06-404a-426c-8934-1b7a534928ac hxxps://cdpus[.]vikstore[.]hu/7f151d58-332c-4f37-910a-d5947af518ed hxxps://fksdx[.]v-vill[.]hu/8c6896b1-b38b-48ff-a6d7-7d911e8a136b hxxps://347hoy7r[.]signal-frontier[.]digital/?ublib=203d3e0c-fc7d-4944-9da6-d7386eec1227 hxxps://bjxbx[.]vrtigo[.]hu/a79f99ef-ab49-4a34-8757-08458ddadc15 hxxps://jkjey[.]vizhoszivattyu[.]hu/e259fabc-1007-4d80-b467-058958de7944 hxxps://iwojm[.]webgondozas[.]hu/7da9b8c9-ea8a-4a94-b015-6380ffdb47b3 hxxps://zsdmb[.]webermann[.]hu/53faf5c5-5efb-4e00-be13-ae74428f0084 hxxps://z9sb13jt[.]cloud-beacon[.]digital/?ublib=1d9656b9-bbf3-490a-989d-b60facd1a733 hxxps://vpufr[.]westinvesteuropa[.]hu/8016dccb-266a-42d6-a9f0-eca4832db678 hxxps://gijjr[.]welovevent[.]com/513b443b-8405-4e82-a917-537c1eb95180 hxxps://xjmrl[.]wlwyb[.]com/0b569bfa-d1ed-42dd-8f89-2ba5d324c8e6 hxxps://numqi[.]wilhelmglobal[.]com/907234c0-4026-4109-ba8e-59e373bb7159 hxxps://qzfcl[.]wpsmart[.]app/f8d902d0-d6d9-4143-8a75-ba32b1fc0d8c hxxps://155b3nro[.]proxy-cascade[.]digital/?ublib=613824ad-ec1d-4437-9ecb-4c74b1c92e22 hxxps://hcfll[.]workoutwithdorci[.]com/4084b335-6edc-4e77-86d7-cec246567866 |
ClearFake |
| URL | hxxp://176[.]65[.]139[.]50/mis[.]sh hxxp://176[.]65[.]139[.]50/FBI[.]sparc |
Bashlite |
| URL | hxxps://primemetricsa[.]com/1518925 hxxp://5[.]252[.]155[.]72/load/hjbk[.]exe hxxp://5[.]252[.]155[.]72/load/ojujn[.]exe hxxp://5[.]252[.]155[.]72/load/kliulij[.]exe hxxp://5[.]252[.]155[.]72/load/os1/VKkQj[.]exe hxxp://5[.]252[.]155[.]72/load/os1/gXjgD[.]exe hxxp://5[.]252[.]155[.]72/load/os1/uRgOy[.]exe hxxp://5[.]252[.]155[.]72/load/bjbh[.]exe hxxp://5[.]252[.]155[.]72/load/hnmh[.]exe hxxp://5[.]252[.]155[.]72/load/jhgkuyyg[.]exe |
ACR Stealer |
| URL | hxxp://5[.]252[.]155[.]72/load/os1/JUFPRUJS[.]exe hxxp://5[.]252[.]155[.]72/load/kythy[.]exe hxxps://femade[.]co[.]uk/wp-content/plugins/kythy[.]exe |
HijackLoader |
| URL | hxxps://62[.]60[.]226[.]162/rpc/ | Vultur |
| URL | hxxps://kevtel[.]com/rawww[.]exe hxxps://dl[.]dropboxusercontent[.]com/scl/fi/8gwqsgp3ywwsus51500y0/IMG_DE00290100_001000_26_05_2026[.]vbe?rlkey=bh347g667knqo2j2vu8677zft&st=97hjftn7&dl=1 |
PureRAT |
| URL | hxxp://178[.]16[.]54[.]109/lb10[.]exe hxxp://178[.]16[.]54[.]109/lb9[.]exe hxxp://178[.]16[.]54[.]109/lb1[.]exe hxxp://178[.]16[.]54[.]109/lb3[.]exe hxxp://178[.]16[.]54[.]109/lb2[.]exe |
BlackMatter |
| URL | hxxps://raw[.]githubusercontent[.]com/BrainiacMonoOS/document/refs/heads/main/origin[.]exe hxxps://github[.]com/BrainiacMonoOS/document/raw/refs/heads/main/origin[.]exe |
Agent Tesla |
| URL | hxxps://alkurdi-sa[.]cam/ap/Udpunktcp[.]toc | Formbook |
| URL | hxxps://eegelhardt[.]lol/file[.]js hxxps://eegelhardt[.]lol/api/v1/session hxxps://eegelhardt[.]lol/api/v1/verify hxxps://hartunh[.]lol/api/v1/verify hxxps://hartunh[.]lol/file[.]js hxxps://hartunh[.]lol/api/v1/session hxxps://eegelhardt[.]lol/api/v1/status hxxps://ryfsowiu[.]icu/d hxxps://hartunh[.]lol/api/v1/status hxxps://cdnmlmdptb[.]icu/d |
KongTuke |
| URL | hxxp://91[.]92[.]242[.]236/files-129312398/files/file_91aca91ebbe1b031[.]exe | Coinminer |
| URL | hxxps://paste[.]sensio[.]no/GeeksItalians | DCRat |







