📃Title: Iran — US/Israel Conflict, how is it impacted Malaysia Organisation?
📅Date: 2026-03-18
🔗References:

Threat Actor

MuddyWater

Threat Actor

APT35

Threat Actor

APT42

Threat Actor

APT34

Threat Actor

Parisite

Threat Actor

CyberAv3ngers

🔖Rectifyq Taxonomies:

🔖MISP Galaxies:

  • target-information=“Malaysia”
  • country=“iran”
  • country=“israel”
  • country=“united states of america”
  • threat-actor= MuddyWater
  • threat-actor= APT35
  • threat-actor= APT42
  • threat-actor= Cyber-Av3ngers
  • threat-actor= Fox-Kitten
  • threat-actor= OilRig
  • mitre-attack-pattern=[]

MISP event uuid: 12ec4fe2-55a7-4cd4-b7d4-f3acf5d223e0

Indicator of Compromise (IoCs)

type,value,comment
md5, f6a4c531e92cbdd5ffac75c76939d7f3, 'IoCs related to MuddyWater'
md5, c89671f994af65677aa48b699a01fe9d, 'IoCs related to MuddyWater'
md5, 2ed6ebaa28a9bfccc59c6e89a8990631, 'IoCs related to MuddyWater'
md5, cd555279b6438260ec71b32e4d02cd9d, 'IoCs related to MuddyWater'
md5, ef6ec560efd05d21976a6fd3f489e206, 'IoCs related to MuddyWater'
md5, 4c169dde3bc184c42ca7a712a61c6f3c, 'IoCs related to MuddyWater'
md5, d2b0785b69f8578bdddf039634507f47, 'IoCs related to MuddyWater'
md5, 7da3d206519086f2725494b3ab095fbb, 'IoCs related to MuddyWater'
md5, 68352f61da6e3236c4fe760997a981ea, 'IoCs related to MuddyWater'
md5, 3a95186019af1943a0ea0f8eb07a288f, 'IoCs related to MuddyWater'
md5, 404f5b1ff4ed035c6178d1789192c4d8, 'IoCs related to MuddyWater'
md5, 74e75830252220cbbe7e3adec4340d2d, 'IoCs related to MuddyWater'
md5, c5c0829df294cc4fd701df5d5c55718f, 'IoCs related to MuddyWater'
md5, cdeb7abfc7775c63745135431272dda3, 'IoCs related to MuddyWater'
md5, f97650ede0c39a29b0b5c5472f685d11, 'IoCs related to MuddyWater'
md5, 0a95918fd6000a69b8a70609f93e910f, 'IoCs related to MuddyWater'
md5, b9a67ffb81420e68f9e5607cc200604a, 'IoCs related to MuddyWater'
md5, 95d9e6c262632abe004c4693a71eaced, 'IoCs related to MuddyWater'
md5, aba760ec55fdeccb35adb068443feb89, 'IoCs related to MuddyWater'
md5, 809334c0b55009c5a50f37e4eec63c43, 'IoCs related to MuddyWater'
md5, 75060f5394b72421c0d8f81f79931aa9, 'IoCs related to MuddyWater'
md5, 93be13bbcad30440a0d0ef3868d67003, 'IoCs related to MuddyWater'
md5, 806adc79e7ea3be50ef1d3974a16b7fb, 'IoCs related to MuddyWater'
md5, 242098c3e87822bffa7c337987065fbe, 'IoCs related to MuddyWater'
md5, c381c2cb8fdd6acf1636280b9424f573, 'IoCs related to MuddyWater'
md5, 2533307ec1ef8b0611c8896e1460b076, 'IoCs related to MuddyWater'
md5, 1f280f51eeb6cf895fe80082ce725841, 'IoCs related to MuddyWater'
md5, 43be8a405a7f57cf9f910d829c521b21, 'IoCs related to MuddyWater'
md5, 23d99f912f2491749b89e4fd337273bc, 'IoCs related to MuddyWater'
md5, 0873ce3db84b79da935f71df3d6c8e6d, 'IoCs related to MuddyWater'
md5, f06e30dee8629e951cefa73373fdef9d, 'IoCs related to MuddyWater'
md5, 1e9a4e774b61acc8a6b35ee50417e661, 'IoCs related to MuddyWater'
md5, d276b8c1660f264d64eff3474718509b, 'IoCs related to MuddyWater'
md5, d70ddec75de88bf4ca7cbb67b56627f6, 'IoCs related to MuddyWater'
md5, 3ab16bd1c339fd0727be650104b74dd1, 'IoCs related to MuddyWater'
md5, 64fc017a451ef273dcacdf6c099031f3, 'IoCs related to MuddyWater'
md5, 4055d8b5c2e909f5db8b75a5750a7005, 'IoCs related to MuddyWater'
md5, e2d6031afd81bf3b6a44de4d0b039055, 'IoCs related to MuddyWater'
md5, f1c935ce028022ab2a495eae83adacc6, 'IoCs related to MuddyWater'
md5, 47e312ecca7af098bb1c6c69188f54cf, 'IoCs related to MuddyWater'
md5, b181ecbb7394e3b1394a8c97af65b7e2, 'IoCs related to MuddyWater'
md5, 08d8ab5dd375847ce909297e59e7df00, 'IoCs related to MuddyWater'
md5, c478e472f6223e7ee92cff8b459e55e2, 'IoCs related to MuddyWater'
md5, 96d5a7e0e75654c444cb1a915c666ac8, 'IoCs related to MuddyWater'
md5, 244a4f81cff4a8dc5872628a40713735, 'IoCs related to MuddyWater'
md5, 6d7ce5b03fe61683229c29a859505163, 'IoCs related to MuddyWater'
md5, aaa9db79b5d6ba319e24e6180a7935d6, 'IoCs related to MuddyWater'
md5, 80c91b4343fe1260e348872e1b4c0713, 'IoCs related to APT35'
md5, 83b7ec5f0d5d6f11ba1284a3f705e98e, 'IoCs related to APT35'
md5, b7e4b752adff07ac1b7b67a9be30b366, 'IoCs related to APT35'
md5, 223196939e1e1ba9256f515b0a510d7a, 'IoCs related to APT35'
md5, e8e0f2ade7294808d86b23a989b21be1, 'IoCs related to APT35'
md5, 7391c3d895246dbd5d26bf70f1d8cbad, 'IoCs related to APT35'
md5, b40533e67e70b7ff7bb53d34a4b9170e, 'IoCs related to APT35'
md5, a17b40b8133c1cc29c6146732086db69, 'IoCs related to APT35'
md5, 14d8e865d3ca67b88c01f7e5d2b0862d, 'IoCs related to APT35'
md5, 67dbe102978e4b612237ad3ee371702f, 'IoCs related to APT35'
md5, 721ec011d75fea67ce9cb2796412651e, 'IoCs related to APT35'
md5, 0c6f48c62d56b454ebc0e1b7e044ca69, 'IoCs related to APT35'
md5, 097447c4b526f8a42e3144afe510ec20, 'IoCs related to APT35'
md5, b319d8972115895f156807348fa9b45f, 'IoCs related to APT35'
md5, 7d216c57da81193a45c67c323d4049c3, 'IoCs related to APT35'
md5, fac805be171884ddbd1396f6a59c90eb, 'IoCs related to APT35'
md5, 776677256087a5a0f543a6b6317cadf8, 'IoCs related to APT35'
md5, 1baeff23794e47eb5c927c0303b7cd92, 'IoCs related to APT35'
md5, cef266a5ea7ba57abc576cbeb5497c97, 'IoCs related to APT35'
md5, b19a097c237d594a85986881f69f127d, 'IoCs related to APT35'
md5, 3a85381dd880c69f40b02859cd9fd473, 'IoCs related to APT35'
md5, 53d0f4a75e8acbb6255bb44242e4843f, 'IoCs related to APT35'
md5, c4b95c1ba3671c5172e7eb01178a7c39, 'IoCs related to APT35'
md5, 20e80c787e129ec11de9accdd0ae4611, 'IoCs related to APT35'
md5, 0c76c41dfe6989ba042e27755e2b68f7, 'IoCs related to APT35'
md5, b683628884cc1d00c234ea2f4b85d153, 'IoCs related to APT35'
md5, 1965a61d6f96b7bb221564ad52ba9719, 'IoCs related to APT35'
md5, 68abbdd75f82a22e3cf6200e13a664b3, 'IoCs related to APT35'
md5, be2bd408c615997c600871970573f023, 'IoCs related to APT35'
md5, be556a0d7d75524acc5518482e43ed9a, 'IoCs related to APT35'
md5, e5f0aea43ac33bf19a78c1a600f690d5, 'IoCs related to APT35'
md5, e23637423599434a6de45b9080b7c561, 'IoCs related to APT35'
md5, 96a9078d97a8b2a0cdc6632b48b8a649, 'IoCs related to APT35'
md5, e16c8c285b1d537be5fe32e93247c282, 'IoCs related to APT35'
md5, 2dab429e52096fd9eb031fc666965a5e, 'IoCs related to APT35'
md5, 347b273df245f5e1fcbef32f5b836f1d, 'IoCs related to APT42'
md5, 2ff97de7a16519b74113ea9137c6ba0c, 'IoCs related to APT42'
md5, d32f89a8a3dd360db3fa9b838163ffa0, 'IoCs related to APT42'
md5, 853687659483d215309941dae391a68f, 'IoCs related to APT42'
md5, dd2653a2543fa44eaeeff3ca82fe3513, 'IoCs related to APT42'
md5, 081419a484bbf99f278ce636d445b9d8, 'IoCs related to APT42'
md5, 4551a6cdf8d23a96aa4124ac9bdb6d1d, 'IoCs related to APT42'
md5, 22e9135a650cd674eb330cbb4a7329c3, 'IoCs related to APT42'
md5, e7df84a5a22aeafcf1c3abf4fd986c91, 'IoCs related to APT42'
md5, d783001d1f98fe3b33e7b97b0b7d96dc, 'IoCs related to APT42'
md5, 755c0350038daefb29b888b6f8739e81, 'IoCs related to APT42'
md5, 2783376fd7af9ec138ecf49ad7391f16, 'IoCs related to APT42'
md5, c23663ebdfbc340457201dbec7469386, 'IoCs related to APT42'
md5, a70d6bbf2acb62e257c98cb0450f4fec, 'IoCs related to APT42'
md5, 5746a9e0a410349b17f8a64af30f9cd3, 'IoCs related to APT42'
md5, c92e2655d115368f92e7b7de5803b7bc, 'IoCs related to APT42'
md5, a50a20edddaded453410600549968914, 'IoCs related to APT42'
md5, a713e686fd984588a4db74f34bf32275, 'IoCs related to APT42'
md5, d7bf138d1aa2b70d6204a2f3c3bc72a7, 'IoCs related to APT42'
md5, bdd0d556166ad0af9ded39ab4b9ed34f, 'IoCs related to APT42'
md5, abe531e9f1e642c47260fac40dc41f59, 'IoCs related to APT42'
md5, 93c19436e6e5207e2e2bed425107f080, 'IoCs related to APT42'
md5, a9cd92a3a4d90daf9331036c772c67de, 'IoCs related to APT42'
md5, d533a3c61e8425e51dca36415b9e8af2, 'IoCs related to APT42'
md5, 8678cca1ee25121546883db16846878b, 'IoCs related to APT42'
md5, c17f4bb8e415e21e6010b98e13c6dff3, 'IoCs related to APT42'
md5, cafe08392d476a057d85de4983bac94e, 'IoCs related to APT42'
md5, 63c4c31965ed08a3207d44e885ebd5e4, 'IoCs related to APT42'
md5, b3411927cc7cd05e02ba64b2a789bbde, 'IoCs related to PARISITE'
md5, ebd96cf97f93e62210fe4d928c49464c, 'IoCs related to PARISITE'
md5, 48274e0b14ce2fbea39bbb98d7c8d495, 'IoCs related to PARISITE'
md5, 6a58b52b184715583cda792b56a0a1ed, 'IoCs related to PARISITE'
md5, 057999f7fedb3339def3be576a2408a7, 'IoCs related to PARISITE'
md5, 923cab44221fabd8f42dd00cc0701ac3, 'IoCs related to PARISITE'
md5, 6445cddd5284516b192330a2805606de, 'IoCs related to PARISITE'
md5, fe94c576b99dcc99b1c82fce00af97ab, 'IoCs related to PARISITE'
md5, e736229e890a138ccf7810e00a6bb50d, 'IoCs related to PARISITE'
domain, stratioai.org, 'IoCs related to MuddyWater'
domain, moodleuni.com, 'IoCs related to MuddyWater'
hostname, nomercys.it.com, 'IoCs related to MuddyWater'
domain, bootcamptg.org, 'IoCs related to MuddyWater'
hostname, sso.moodleuni.com, 'IoCs related to MuddyWater'
domain, bookairway.com, 'IoCs related to MuddyWater'
hostname, sso.facetalk.org, 'IoCs related to MuddyWater'
domain, netivtech.org, 'IoCs related to MuddyWater'
domain, processplanet.org, 'IoCs related to MuddyWater'
domain, screenai.online, 'IoCs related to MuddyWater'
domain, pharmacynod.com, 'IoCs related to MuddyWater'
domain, facetalk.org, 'IoCs related to MuddyWater'
domain, photosjournalism.com, 'IoCs related to MuddyWater'
ip-dst, 165.227.82.147, 'IoCs related to MuddyWater'
ip-dst, 194.11.246.101, 'IoCs related to MuddyWater'
ip-dst, 157.20.182.49, 'IoCs related to MuddyWater'
ip-dst, 161.35.228.250, 'IoCs related to MuddyWater'
ip-dst, 195.20.17.189, 'IoCs related to MuddyWater'
ip-dst, 62.106.66.112, 'IoCs related to MuddyWater'
ip-dst, 159.198.68.25, 'IoCs related to MuddyWater'
ip-dst, 159.65.227.190, 'IoCs related to MuddyWater'
ip-dst, 18.116.63.2, 'IoCs related to MuddyWater'
ip-dst, 209.74.87.100, 'IoCs related to MuddyWater'
ip-dst, 35.175.224.64, 'IoCs related to MuddyWater'
ip-dst, 159.198.66.153, 'IoCs related to MuddyWater'
ip-dst, 143.198.5.41, 'IoCs related to MuddyWater'
ip-dst, 18.223.24.218, 'IoCs related to MuddyWater'
ip-dst, 185.128.139.4, 'IoCs related to MuddyWater'
sha1, 2d5b8da0d0719e6f8212497d7e34d5f1b1fa6776, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 8db7338c487143a4d43ed1a22fec49a7, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, f5dd107eaca971f24effbaf598119ca1, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
sha1, 4d6bf3834e9afb8e3c3861bf2ad64a68d9c7d870, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 943981571f4e095063850c26158835b8, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 25d3a014c332aaa3adce429d0e714e31, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 7d887893a6107d7ae902e6771f30e080, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 63080b45ca4978fb5d2d71387dbaf610, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, a933c623e3b047292efd55e0e424c732, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
sha1, 544bf4f9e5fdb4d35987b4c25f537213ce3c926a, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 67e09818d1aa650896a432b1de54d376, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
md5, 424f887f651371aa3058cf7c8e908d2a, 'IoCs related to APT35 No sample in VT\r\nLast check:21/03/2026'
domain, unityprogressall.org, 'IoCs related to APT35'
domain, transfergocompany.com, 'IoCs related to APT35'
domain, defenceprodindia.site, 'IoCs related to APT35'
domain, mojavemassageandwellness.com, 'IoCs related to APT35'
domain, supervisor-intendant.info, 'IoCs related to APT35'
ip-dst, 185.132.176.13, 'IoCs related to APT35'
ip-dst, 195.160.220.202, 'IoCs related to APT35'
ip-dst, 1.235.222.140, 'IoCs related to APT35'
hostname, whatsapp-meeting.duckdns.org, 'IoCs related to APT42'
hostname, whatsapp-meet.duckdns.org, 'IoCs related to APT42'
hostname, meet-join.duckdns.org, 'IoCs related to APT42'
hostname, whatsapp-join-meet.duckdns.org, 'IoCs related to APT42'
domain, meet-safe.online, 'IoCs related to APT42'
hostname, meet-login.duckdns.org, 'IoCs related to APT42'
domain, act-rights-gaming.digital, 'IoCs related to APT42'
hostname, book.good-while.online, 'IoCs related to APT42'
domain, net-vision.xyz, 'IoCs related to APT42'
domain, join-host-room.xyz, 'IoCs related to APT42'
domain, joining-inside-space.world, 'IoCs related to APT42'
domain, forward-goal-inner.digital, 'IoCs related to APT42'
hostname, www.whatsapp-meet.duckdns.org, 'IoCs related to APT42'
domain, accord-room-check.live, 'IoCs related to APT42'
domain, joining-room-host.xyz, 'IoCs related to APT42'
domain, net-works.xyz, 'IoCs related to APT42'
domain, re-shrt98.xyz, 'IoCs related to APT42'
domain, first-step.space, 'IoCs related to APT42'
domain, tiny-name.cyou, 'IoCs related to APT42'
domain, bonjour-ills.christmas, 'IoCs related to APT42'
md5, 59f636854f5a511945eb4870cce6a85b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 786379bb3c0e3ea6ec7d7af88d109994c20bb849, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 923cefd8623c495b31415e0775c099c2, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, e12acf1b58b633d090b7e9828b0790502c9b9cd2df51a6863319912d2152dbc9, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, c0786c60e92be76cb9f9b3da5f53d5e8b999b2c86a73e94d793070f2b96f852e, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 30c4ff83d5dc3d4c5be77283defce614f6310339705b039cae022bdde72dec38, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 86969bc9f13c6359c54151432f3819301074164c, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 9dcf203b7d87698d678cf9df42ab4ac0, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 56401106c49609c526e218a4a4103fee, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, def5cb2d480d058902b7cc2f6c0915afd972ad0b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 9885c4343942163087fbbea7939bec38702086e0f737c97deb288e8d3e6f140a, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 9e7f2b5e0c5b164f2c62b412a9a91cbc, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, a841c8179ac48bdc2ebf1e646d4f552d9cd02fc79207fdc2fc783889049f32bc, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, ea10bc8c77446c9a7eb4720df656a465e3cf4edb40a2c5cacd7f6b665960ccda, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 5d3ddb0e95725974b6034f19cfaef2d6ebd69c87, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 03f2b01a9bc670ce6f2a2a50d5c08b22, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, ddc5bdace73c1754d87d9ea1c545a0cb9112789b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 9208034af160357c99b45564ff54570b1510baf3bc033999ae4281482617ff5b, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, e6a1157020746cf487799ad344a5b1a603052f0e, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 669437838a13bf783d6ff1574274e5b0, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, b6e4db5df0f92783341267dedea4fdc5530e4a4f, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, bbe681caebf5711ffc366d09097c7c587e212ebb, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, f7ec27cd5b05a66b263f620402c39c2b7d2f23ef, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 07ab4dd676f477e9f93be1a325073d93, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 27ae97933a4dd955a7e928be0efa361907c088076837446ada5642bd32500627, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 1c4147fb6edf4075102432716c6a62711b5c57599c6a22a20eda61321023a429, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 28e04219b84d36243cfa03320ab0b9677bc9fd1d, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 5d573209939c737a829dac72383062d9965a8fa3, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 04f9274c62c612342e74f868fc3069f5, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 903638cceca0718c586739cb822ca396f84693bc3e9b3d07daff5c09f0a5b2a6, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, a87b96ae9a31ec92e29a48a522ef9554d02ce74db7cb6cd4b133fff07c5b258e, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha256, 64892920b813f61eab4797bd60e3fc79a810354e2318061b252dfc027bf72329, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, efb7b3c47ae74663f153a4b091abfa841c15ea7c, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 876fd4e9676ef914bbaf3bbaf7d97e368290e09c, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, 10f64f4a976195e25587713c4f754b46b61849cc, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
sha1, cf7399acf378c147e706f90e924015ef47cdb364, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 42c497d2b9b43061482d2544c6d09d14, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
md5, 167f4e92fb3d937bd6a7ded14bf076e6, 'IoCs related to PARISITE No sample in VT\r\nLast check:21/03/2026'
domain, encoremir.com, 'IoCs related to PARISITE'
hostname, apps.gist.githubapp.net, 'IoCs related to PARISITE'
ip-dst, 66.55.159.84, 'IoCs related to PARISITE'
ip-dst, 64.176.165.175, 'IoCs related to PARISITE'
ip-dst, 5.255.100.203, 'IoCs related to PARISITE'

Full IOCs available in Rectifyq’s MISP