Malicious PyPI crypto pay package aiocpa implants infostealer code
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 Python - T1059.006 Software - T1592.002 Tool - T1588.002 Third-Party Software - T1072 |
Common Information
Type | Value |
---|---|
UUID | 0f9ad427-48e7-4e0b-ba6c-46fabab58649 |
Fingerprint | 531191d8817cfa9 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Nov. 28, 2024, midnight |
Added to db | Nov. 28, 2024, 12:23 p.m. |
Last updated | Dec. 3, 2024, 11:24 a.m. |
Headline | Malicious PyPI crypto pay package aiocpa implants infostealer code |
Title | Malicious PyPI crypto pay package aiocpa implants infostealer code |
Detected Hints/Tags/Attributes | 40/1/6 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 51 | ✔ | ReversingLabs Blog | https://blog.reversinglabs.com/blog/rss.xml | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 9 | sync.py |
|
Details | File | 10 | sync.py |
|
Details | sha1 | 3 | a1187d2a4acfe8ddaee3c7be79a9bb838142903a |
|
Details | sha1 | 3 | 7007be259829d72e73ff63ad409770ca56cfc418 |
|
Details | sha1 | 3 | fc36c157075dd4302f71ed2660e19a61016b085c |
|
Details | sha1 | 3 | 01f7db47368bffa279fb15c688518774454650cf |