Intelligence View
17-12-2019 | Socks 5 & 4
[CENTER][Shopsocks5.com] Service Socks5 Cheap Payment Instantly Perfectmoney, Bitcoin, Wmtransfer, BTC-E ([URL="http://shopsocks5.com/"] Please click Buy Socks [/URL]) Check Socks Online http://shopsocks5.com/check/[/CENTER] Live |…
Payment Instantly Perfectmoney, Bitcoin, Wmtransfer, BTC-E ([URL="http://shopsocks5.com/"] Please click Buy Socks [/URL])
Check Socks Online http://shopsocks5.com/check/[/CENTER]
Live | 45.77.49.73:9439 | United States | Matawan | NJ | 07747 | Checked at http://shopsocks5.com
Live | 98.143.145.29:62354 | United States | Los Angeles | CA | 90014 | Checked at http://shopsocks5.com
Live | 95.170.77.200:1070 | Netherlands | Unknown | Unknown | Unknown | Checked at http://shopsocks5.com
Live | 192.169.244.80:11013 | United States | Scottsdale | AZ | 85260 | Checked at http://shopsocks5.com
Live | 96.44.133.110:58690 | United States | Los Angeles | CA | 90014 | Checked at http://shopsocks5.com
Live | 192.241.187.83:31650 | United States | New York | NY | 10118 | Checked at http://shopsocks5.com
Live | 72.11.148.222:56533 | United States | Los Angeles | CA | 90014 | Checked at http://shopsocks5.com
Live | 208.113.155.73:54879 | United States | Brea | CA | 92821 | Checked at http://shopsocks5.com
Live | 142.93.70.7:9100 | Canada | North York | ON | M3B | Checked at http://shopsocks5.com
Live | 192.169.244.80:36396 | United States | Scottsdale | AZ | 85260 | Checked at http://shopsocks5.com
Live | 72.210.252.134:46164 | United States | Unknown | Unknown | Unknown | Checked at http://shopsocks5.com
Live | 173.245.239.223:16938 | United States | Atlanta | GA | 30328 | Checked at http://shopsocks5.com
Live | 192.169.152.231:50843 | United States | Scottsdale | AZ | 85260 | Checked at http://shopsocks5.com
Live | 192.169.218.22:12309 | United States | Scottsdale | AZ | 85260 | Checked at http://shopsocks5.com
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - 17-12-2019 | Socks 5 & 4
id: 39f2b826-e717-452b-83c2-44a804d43a43
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
category: network_connection
product: any
detection:
selection:
DestinationIp:
- '45.77.49.73'
- '98.143.145.29'
- '95.170.77.200'
- '192.169.244.80'
- '96.44.133.110'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-24"
description = "YARA Signature for "
strings:
$str = "17-12-2019 | Socks 5 & 4" ascii wide
condition:
any of them
}tsecurity.de Cognitive Threat RAG
Kognitive Analyse für identifizierte Bedrohung: Erhöhte Bedrohungslage im Bereich 17-12-2019 | Socks 5 & 4.... Basierend auf 368k Vektor-Korrelationen werden sofortige Isolationsmaßnahmen für betroffene Endpunkte empfohlen.
Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.
- 1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
- 2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
- 3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
SOCIAL SHARE CARD GENERATOR