‘수입통관 정보제출 안내’로 유포되는 운송회사 사칭 메일 - ASEC BLOG
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Phishing - T1660 Phishing - T1566 |
Common Information
Type | Value |
---|---|
UUID | 21eb6223-f28d-42fd-bf36-25a05091586d |
Fingerprint | e6656557162c3906 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Feb. 16, 2023, 5:27 p.m. |
Added to db | Feb. 16, 2023, 10:21 a.m. |
Last updated | Sept. 4, 2024, 9:13 p.m. |
Headline | ‘수입통관 정보제출 안내’로 유포되는 운송회사 사칭 메일 |
Title | ‘수입통관 정보제출 안내’로 유포되는 운송회사 사칭 메일 - ASEC BLOG |
Detected Hints/Tags/Attributes | 6/2/9 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://asec.ahnlab.com/ko/47968/ |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 18 | ✔ | ASEC | https://asec.ahnlab.com/ko/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 6 | lucent-fittings.000webhostapp.com |
|
Details | File | 6 | action.php |
|
Details | File | 6 | pdf.gz |
|
Details | md5 | 2 | c2b8db7362020b321870e649b05f12fb |
|
Details | md5 | 2 | e49967b8d499bb593cf44026aa79871b |
|
Details | md5 | 2 | 7739ebe59ba934f4887d70e4a4d31d6a |
|
Details | IPv4 | 2 | 31.42.184.26 |
|
Details | Url | 2 | https://lucent-fittings.000webhostapp.com/action.php |
|
Details | Url | 2 | http://31.42.184.26/pdf.gz |