📃Title: Iran — US/Israel Conflict, how is it impacted Malaysia Organisation?
📅Date: 2026-03-18
🔗References:

🔖Rectifyq Taxonomies:

🔖MISP Galaxies:

  • target-information=“Malaysia”
  • country=“iran”
  • country=“israel”
  • country=“united states of america”
  • threat-actor= MuddyWater
  • threat-actor= APT35
  • threat-actor= APT42
  • threat-actor= Cyber-Av3ngers
  • threat-actor= Fox-Kitten
  • threat-actor= OilRig
  • mitre-attack-pattern=[]

MISP event uuid: 12ec4fe2-55a7-4cd4-b7d4-f3acf5d223e0

Indicator of Compromise (IoCs)

type,value,comment
md5, f6a4c531e92cbdd5ffac75c76939d7f3, 'IoCs related to MuddyWater'
md5, c89671f994af65677aa48b699a01fe9d, 'IoCs related to MuddyWater'
md5, 2ed6ebaa28a9bfccc59c6e89a8990631, 'IoCs related to MuddyWater'
md5, cd555279b6438260ec71b32e4d02cd9d, 'IoCs related to MuddyWater'
md5, ef6ec560efd05d21976a6fd3f489e206, 'IoCs related to MuddyWater'
md5, 4c169dde3bc184c42ca7a712a61c6f3c, 'IoCs related to MuddyWater'
md5, d2b0785b69f8578bdddf039634507f47, 'IoCs related to MuddyWater'
md5, 7da3d206519086f2725494b3ab095fbb, 'IoCs related to MuddyWater'
md5, 68352f61da6e3236c4fe760997a981ea, 'IoCs related to MuddyWater'
md5, 3a95186019af1943a0ea0f8eb07a288f, 'IoCs related to MuddyWater'
md5, 404f5b1ff4ed035c6178d1789192c4d8, 'IoCs related to MuddyWater'
md5, 74e75830252220cbbe7e3adec4340d2d, 'IoCs related to MuddyWater'
md5, c5c0829df294cc4fd701df5d5c55718f, 'IoCs related to MuddyWater'
md5, cdeb7abfc7775c63745135431272dda3, 'IoCs related to MuddyWater'
md5, f97650ede0c39a29b0b5c5472f685d11, 'IoCs related to MuddyWater'
md5, 0a95918fd6000a69b8a70609f93e910f, 'IoCs related to MuddyWater'
md5, b9a67ffb81420e68f9e5607cc200604a, 'IoCs related to MuddyWater'
md5, 95d9e6c262632abe004c4693a71eaced, 'IoCs related to MuddyWater'
md5, aba760ec55fdeccb35adb068443feb89, 'IoCs related to MuddyWater'
md5, 809334c0b55009c5a50f37e4eec63c43, 'IoCs related to MuddyWater'
md5, 75060f5394b72421c0d8f81f79931aa9, 'IoCs related to MuddyWater'
md5, 93be13bbcad30440a0d0ef3868d67003, 'IoCs related to MuddyWater'
md5, 806adc79e7ea3be50ef1d3974a16b7fb, 'IoCs related to MuddyWater'
md5, 242098c3e87822bffa7c337987065fbe, 'IoCs related to MuddyWater'
md5, c381c2cb8fdd6acf1636280b9424f573, 'IoCs related to MuddyWater'
md5, 2533307ec1ef8b0611c8896e1460b076, 'IoCs related to MuddyWater'
md5, 1f280f51eeb6cf895fe80082ce725841, 'IoCs related to MuddyWater'
md5, 43be8a405a7f57cf9f910d829c521b21, 'IoCs related to MuddyWater'
md5, 23d99f912f2491749b89e4fd337273bc, 'IoCs related to MuddyWater'
md5, 0873ce3db84b79da935f71df3d6c8e6d, 'IoCs related to MuddyWater'
md5, f06e30dee8629e951cefa73373fdef9d, 'IoCs related to MuddyWater'
md5, 1e9a4e774b61acc8a6b35ee50417e661, 'IoCs related to MuddyWater'
md5, d276b8c1660f264d64eff3474718509b, 'IoCs related to MuddyWater'
md5, d70ddec75de88bf4ca7cbb67b56627f6, 'IoCs related to MuddyWater'
md5, 3ab16bd1c339fd0727be650104b74dd1, 'IoCs related to MuddyWater'
md5, 64fc017a451ef273dcacdf6c099031f3, 'IoCs related to MuddyWater'
md5, 4055d8b5c2e909f5db8b75a5750a7005, 'IoCs related to MuddyWater'
md5, e2d6031afd81bf3b6a44de4d0b039055, 'IoCs related to MuddyWater'
md5, f1c935ce028022ab2a495eae83adacc6, 'IoCs related to MuddyWater'
md5, 47e312ecca7af098bb1c6c69188f54cf, 'IoCs related to MuddyWater'
md5, b181ecbb7394e3b1394a8c97af65b7e2, 'IoCs related to MuddyWater'
md5, 08d8ab5dd375847ce909297e59e7df00, 'IoCs related to MuddyWater'
md5, c478e472f6223e7ee92cff8b459e55e2, 'IoCs related to MuddyWater'
md5, 96d5a7e0e75654c444cb1a915c666ac8, 'IoCs related to MuddyWater'
md5, 244a4f81cff4a8dc5872628a40713735, 'IoCs related to MuddyWater'
md5, 6d7ce5b03fe61683229c29a859505163, 'IoCs related to MuddyWater'
md5, aaa9db79b5d6ba319e24e6180a7935d6, 'IoCs related to MuddyWater'
md5, 80c91b4343fe1260e348872e1b4c0713, 'IoCs related to APT35'
md5, 83b7ec5f0d5d6f11ba1284a3f705e98e, 'IoCs related to APT35'
md5, b7e4b752adff07ac1b7b67a9be30b366, 'IoCs related to APT35'
md5, 223196939e1e1ba9256f515b0a510d7a, 'IoCs related to APT35'
md5, e8e0f2ade7294808d86b23a989b21be1, 'IoCs related to APT35'
md5, 7391c3d895246dbd5d26bf70f1d8cbad, 'IoCs related to APT35'
md5, b40533e67e70b7ff7bb53d34a4b9170e, 'IoCs related to APT35'
md5, a17b40b8133c1cc29c6146732086db69, 'IoCs related to APT35'
md5, 14d8e865d3ca67b88c01f7e5d2b0862d, 'IoCs related to APT35'
md5, 67dbe102978e4b612237ad3ee371702f, 'IoCs related to APT35'
md5, 721ec011d75fea67ce9cb2796412651e, 'IoCs related to APT35'
md5, 0c6f48c62d56b454ebc0e1b7e044ca69, 'IoCs related to APT35'
md5, 097447c4b526f8a42e3144afe510ec20, 'IoCs related to APT35'
md5, b319d8972115895f156807348fa9b45f, 'IoCs related to APT35'
md5, 7d216c57da81193a45c67c323d4049c3, 'IoCs related to APT35'
md5, fac805be171884ddbd1396f6a59c90eb, 'IoCs related to APT35'
md5, 776677256087a5a0f543a6b6317cadf8, 'IoCs related to APT35'
md5, 1baeff23794e47eb5c927c0303b7cd92, 'IoCs related to APT35'
md5, cef266a5ea7ba57abc576cbeb5497c97, 'IoCs related to APT35'
md5, b19a097c237d594a85986881f69f127d, 'IoCs related to APT35'
md5, 3a85381dd880c69f40b02859cd9fd473, 'IoCs related to APT35'
md5, 53d0f4a75e8acbb6255bb44242e4843f, 'IoCs related to APT35'
md5, c4b95c1ba3671c5172e7eb01178a7c39, 'IoCs related to APT35'
md5, 20e80c787e129ec11de9accdd0ae4611, 'IoCs related to APT35'
md5, 0c76c41dfe6989ba042e27755e2b68f7, 'IoCs related to APT35'
md5, b683628884cc1d00c234ea2f4b85d153, 'IoCs related to APT35'
md5, 1965a61d6f96b7bb221564ad52ba9719, 'IoCs related to APT35'
md5, 68abbdd75f82a22e3cf6200e13a664b3, 'IoCs related to APT35'
md5, be2bd408c615997c600871970573f023, 'IoCs related to APT35'
md5, be556a0d7d75524acc5518482e43ed9a, 'IoCs related to APT35'
md5, e5f0aea43ac33bf19a78c1a600f690d5, 'IoCs related to APT35'
md5, e23637423599434a6de45b9080b7c561, 'IoCs related to APT35'
md5, 96a9078d97a8b2a0cdc6632b48b8a649, 'IoCs related to APT35'
md5, e16c8c285b1d537be5fe32e93247c282, 'IoCs related to APT35'
md5, 2dab429e52096fd9eb031fc666965a5e, 'IoCs related to APT35'
md5, 347b273df245f5e1fcbef32f5b836f1d, 'IoCs related to APT42'
md5, 2ff97de7a16519b74113ea9137c6ba0c, 'IoCs related to APT42'
md5, d32f89a8a3dd360db3fa9b838163ffa0, 'IoCs related to APT42'
md5, 853687659483d215309941dae391a68f, 'IoCs related to APT42'
md5, dd2653a2543fa44eaeeff3ca82fe3513, 'IoCs related to APT42'
md5, 081419a484bbf99f278ce636d445b9d8, 'IoCs related to APT42'
md5, 4551a6cdf8d23a96aa4124ac9bdb6d1d, 'IoCs related to APT42'
md5, 22e9135a650cd674eb330cbb4a7329c3, 'IoCs related to APT42'
md5, e7df84a5a22aeafcf1c3abf4fd986c91, 'IoCs related to APT42'
md5, d783001d1f98fe3b33e7b97b0b7d96dc, 'IoCs related to APT42'
md5, 755c0350038daefb29b888b6f8739e81, 'IoCs related to APT42'
md5, 2783376fd7af9ec138ecf49ad7391f16, 'IoCs related to APT42'
md5, c23663ebdfbc340457201dbec7469386, 'IoCs related to APT42'
md5, a70d6bbf2acb62e257c98cb0450f4fec, 'IoCs related to APT42'
md5, 5746a9e0a410349b17f8a64af30f9cd3, 'IoCs related to APT42'
md5, c92e2655d115368f92e7b7de5803b7bc, 'IoCs related to APT42'
md5, a50a20edddaded453410600549968914, 'IoCs related to APT42'
md5, a713e686fd984588a4db74f34bf32275, 'IoCs related to APT42'
md5, d7bf138d1aa2b70d6204a2f3c3bc72a7, 'IoCs related to APT42'
md5, bdd0d556166ad0af9ded39ab4b9ed34f, 'IoCs related to APT42'
md5, abe531e9f1e642c47260fac40dc41f59, 'IoCs related to APT42'
md5, 93c19436e6e5207e2e2bed425107f080, 'IoCs related to APT42'
md5, a9cd92a3a4d90daf9331036c772c67de, 'IoCs related to APT42'
md5, d533a3c61e8425e51dca36415b9e8af2, 'IoCs related to APT42'
md5, 8678cca1ee25121546883db16846878b, 'IoCs related to APT42'
md5, c17f4bb8e415e21e6010b98e13c6dff3, 'IoCs related to APT42'
md5, cafe08392d476a057d85de4983bac94e, 'IoCs related to APT42'
md5, 63c4c31965ed08a3207d44e885ebd5e4, 'IoCs related to APT42'
md5, b3411927cc7cd05e02ba64b2a789bbde, 'IoCs related to PARISITE'
md5, ebd96cf97f93e62210fe4d928c49464c, 'IoCs related to PARISITE'
md5, 48274e0b14ce2fbea39bbb98d7c8d495, 'IoCs related to PARISITE'
md5, 6a58b52b184715583cda792b56a0a1ed, 'IoCs related to PARISITE'
md5, 057999f7fedb3339def3be576a2408a7, 'IoCs related to PARISITE'
md5, 923cab44221fabd8f42dd00cc0701ac3, 'IoCs related to PARISITE'
md5, 6445cddd5284516b192330a2805606de, 'IoCs related to PARISITE'
md5, fe94c576b99dcc99b1c82fce00af97ab, 'IoCs related to PARISITE'
md5, e736229e890a138ccf7810e00a6bb50d, 'IoCs related to PARISITE'
domain, stratioai.org, 'IoCs related to MuddyWater'
domain, moodleuni.com, 'IoCs related to MuddyWater'
hostname, nomercys.it.com, 'IoCs related to MuddyWater'
domain, bootcamptg.org, 'IoCs related to MuddyWater'
hostname, sso.moodleuni.com, 'IoCs related to MuddyWater'
domain, bookairway.com, 'IoCs related to MuddyWater'
hostname, sso.facetalk.org, 'IoCs related to MuddyWater'
domain, netivtech.org, 'IoCs related to MuddyWater'
domain, processplanet.org, 'IoCs related to MuddyWater'
domain, screenai.online, 'IoCs related to MuddyWater'
domain, pharmacynod.com, 'IoCs related to MuddyWater'
domain, facetalk.org, 'IoCs related to MuddyWater'
domain, photosjournalism.com, 'IoCs related to MuddyWater'
ip-dst, 165.227.82.147, 'IoCs related to MuddyWater'
ip-dst, 194.11.246.101, 'IoCs related to MuddyWater'
ip-dst, 157.20.182.49, 'IoCs related to MuddyWater'
ip-dst, 161.35.228.250, 'IoCs related to MuddyWater'
ip-dst, 195.20.17.189, 'IoCs related to MuddyWater'
ip-dst, 62.106.66.112, 'IoCs related to MuddyWater'
ip-dst, 159.198.68.25, 'IoCs related to MuddyWater'
ip-dst, 159.65.227.190, 'IoCs related to MuddyWater'
ip-dst, 18.116.63.2, 'IoCs related to MuddyWater'
ip-dst, 209.74.87.100, 'IoCs related to MuddyWater'
ip-dst, 35.175.224.64, 'IoCs related to MuddyWater'
ip-dst, 159.198.66.153, 'IoCs related to MuddyWater'
ip-dst, 143.198.5.41, 'IoCs related to MuddyWater'
ip-dst, 18.223.24.218, 'IoCs related to MuddyWater'
ip-dst, 185.128.139.4, 'IoCs related to MuddyWater'
sha1, 2d5b8da0d0719e6f8212497d7e34d5f1b1fa6776, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 8db7338c487143a4d43ed1a22fec49a7, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, f5dd107eaca971f24effbaf598119ca1, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
sha1, 4d6bf3834e9afb8e3c3861bf2ad64a68d9c7d870, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 943981571f4e095063850c26158835b8, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 25d3a014c332aaa3adce429d0e714e31, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 7d887893a6107d7ae902e6771f30e080, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 63080b45ca4978fb5d2d71387dbaf610, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, a933c623e3b047292efd55e0e424c732, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
sha1, 544bf4f9e5fdb4d35987b4c25f537213ce3c926a, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 67e09818d1aa650896a432b1de54d376, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 424f887f651371aa3058cf7c8e908d2a, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
domain, unityprogressall.org, 'IoCs related to APT35'
domain, transfergocompany.com, 'IoCs related to APT35'
domain, defenceprodindia.site, 'IoCs related to APT35'
domain, mojavemassageandwellness.com, 'IoCs related to APT35'
domain, supervisor-intendant.info, 'IoCs related to APT35'
ip-dst, 185.132.176.13, 'IoCs related to APT35'
ip-dst, 195.160.220.202, 'IoCs related to APT35'
ip-dst, 1.235.222.140, 'IoCs related to APT35'
hostname, whatsapp-meeting.duckdns.org, 'IoCs related to APT42'
hostname, whatsapp-meet.duckdns.org, 'IoCs related to APT42'
hostname, meet-join.duckdns.org, 'IoCs related to APT42'
hostname, whatsapp-join-meet.duckdns.org, 'IoCs related to APT42'
domain, meet-safe.online, 'IoCs related to APT42'
hostname, meet-login.duckdns.org, 'IoCs related to APT42'
domain, act-rights-gaming.digital, 'IoCs related to APT42'
hostname, book.good-while.online, 'IoCs related to APT42'
domain, net-vision.xyz, 'IoCs related to APT42'
domain, join-host-room.xyz, 'IoCs related to APT42'
domain, joining-inside-space.world, 'IoCs related to APT42'
domain, forward-goal-inner.digital, 'IoCs related to APT42'
hostname, www.whatsapp-meet.duckdns.org, 'IoCs related to APT42'
domain, accord-room-check.live, 'IoCs related to APT42'
domain, joining-room-host.xyz, 'IoCs related to APT42'
domain, net-works.xyz, 'IoCs related to APT42'
domain, re-shrt98.xyz, 'IoCs related to APT42'
domain, first-step.space, 'IoCs related to APT42'
domain, tiny-name.cyou, 'IoCs related to APT42'
domain, bonjour-ills.christmas, 'IoCs related to APT42'
md5, 59f636854f5a511945eb4870cce6a85b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 786379bb3c0e3ea6ec7d7af88d109994c20bb849, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 923cefd8623c495b31415e0775c099c2, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, e12acf1b58b633d090b7e9828b0790502c9b9cd2df51a6863319912d2152dbc9, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, c0786c60e92be76cb9f9b3da5f53d5e8b999b2c86a73e94d793070f2b96f852e, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 30c4ff83d5dc3d4c5be77283defce614f6310339705b039cae022bdde72dec38, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 86969bc9f13c6359c54151432f3819301074164c, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 9dcf203b7d87698d678cf9df42ab4ac0, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 56401106c49609c526e218a4a4103fee, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, def5cb2d480d058902b7cc2f6c0915afd972ad0b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 9885c4343942163087fbbea7939bec38702086e0f737c97deb288e8d3e6f140a, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 9e7f2b5e0c5b164f2c62b412a9a91cbc, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, a841c8179ac48bdc2ebf1e646d4f552d9cd02fc79207fdc2fc783889049f32bc, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, ea10bc8c77446c9a7eb4720df656a465e3cf4edb40a2c5cacd7f6b665960ccda, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 5d3ddb0e95725974b6034f19cfaef2d6ebd69c87, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 03f2b01a9bc670ce6f2a2a50d5c08b22, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, ddc5bdace73c1754d87d9ea1c545a0cb9112789b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 9208034af160357c99b45564ff54570b1510baf3bc033999ae4281482617ff5b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, e6a1157020746cf487799ad344a5b1a603052f0e, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 669437838a13bf783d6ff1574274e5b0, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, b6e4db5df0f92783341267dedea4fdc5530e4a4f, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, bbe681caebf5711ffc366d09097c7c587e212ebb, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, f7ec27cd5b05a66b263f620402c39c2b7d2f23ef, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 07ab4dd676f477e9f93be1a325073d93, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 27ae97933a4dd955a7e928be0efa361907c088076837446ada5642bd32500627, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 1c4147fb6edf4075102432716c6a62711b5c57599c6a22a20eda61321023a429, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 28e04219b84d36243cfa03320ab0b9677bc9fd1d, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 5d573209939c737a829dac72383062d9965a8fa3, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 04f9274c62c612342e74f868fc3069f5, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 903638cceca0718c586739cb822ca396f84693bc3e9b3d07daff5c09f0a5b2a6, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, a87b96ae9a31ec92e29a48a522ef9554d02ce74db7cb6cd4b133fff07c5b258e, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 64892920b813f61eab4797bd60e3fc79a810354e2318061b252dfc027bf72329, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, efb7b3c47ae74663f153a4b091abfa841c15ea7c, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 876fd4e9676ef914bbaf3bbaf7d97e368290e09c, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 10f64f4a976195e25587713c4f754b46b61849cc, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, cf7399acf378c147e706f90e924015ef47cdb364, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 42c497d2b9b43061482d2544c6d09d14, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 167f4e92fb3d937bd6a7ded14bf076e6, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
domain, encoremir.com, 'IoCs related to PARISITE'
hostname, apps.gist.githubapp.net, 'IoCs related to PARISITE'
ip-dst, 66.55.159.84, 'IoCs related to PARISITE'
ip-dst, 64.176.165.175, 'IoCs related to PARISITE'
ip-dst, 5.255.100.203, 'IoCs related to PARISITE'

Full IOCs available in Rectifyq’s MISP