The Mongolian Skimmer: a Skimming Campaign | Jscrambler blog
Tags
country: | Mongolia |
attack-pattern: | Data Domains - T1583.001 Domains - T1584.001 Javascript - T1059.007 Server - T1583.004 Server - T1584.004 Tool - T1588.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 25a5faea-3479-4b97-be87-7568ec225c31 |
Fingerprint | b495810ea911cf2b |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Oct. 9, 2024, midnight |
Added to db | Oct. 15, 2024, 12:14 p.m. |
Last updated | Oct. 15, 2024, 12:14 p.m. |
Headline | The Mongolian Skimmer: different clothes, equally dangerous |
Title | The Mongolian Skimmer: a Skimming Campaign | Jscrambler blog |
Detected Hints/Tags/Attributes | 49/2/15 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://jscrambler.com/blog/the-mongolian-skimmer |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 2 | common.gifcache.com |
|
Details | Domain | 2 | cache.cdn-core.com |
|
Details | Domain | 2 | widget.statictool.com |
|
Details | Domain | 2 | widget.useonline.org |
|
Details | Domain | 2 | process.services.bz |
|
Details | Domain | 2 | stat.mystatpal.com |
|
Details | Domain | 2 | seomgr.com |
|
Details | Domain | 2 | mdn.safecontentdelivery.com |
|
Details | IPv4 | 2 | 191.96.56.171 |
|
Details | IPv4 | 2 | 198.187.29.127 |
|
Details | IPv4 | 2 | 82.197.83.18 |
|
Details | IPv4 | 2 | 82.180.138.247 |
|
Details | IPv4 | 2 | 82.197.83.29 |
|
Details | IPv4 | 2 | 62.72.7.8 |
|
Details | IPv4 | 2 | 217.21.77.96 |