LokiBot Phishing Malware Baseline | Cofense
Tags
Common Information
Type | Value |
---|---|
UUID | 2e3cc84c-4e17-4d91-95e6-e7d0f5a862d5 |
Fingerprint | a5076905a2d9971f |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Sept. 13, 2023, 8:30 a.m. |
Added to db | Nov. 19, 2023, 6 a.m. |
Last updated | Nov. 17, 2024, 5:55 p.m. |
Headline | LokiBot – Phishing Malware Baseline |
Title | LokiBot Phishing Malware Baseline | Cofense |
Detected Hints/Tags/Attributes | 52/2/15 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 90 | ✔ | — | https://cofense.com/blog/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 375 | cve-2017-11882 |
|
Details | File | 82 | fre.php |
|
Details | File | 101 | gate.php |
|
Details | File | 1 | aaaj.php |
|
Details | File | 1 | nimda.php |
|
Details | File | 1 | ight.php |
|
Details | File | 1 | crkk.php |
|
Details | File | 1 | free.php |
|
Details | File | 1 | wish.php |
|
Details | File | 1 | base.php |
|
Details | File | 2 | fred.php |
|
Details | File | 1 | mono.php |
|
Details | File | 1 | mime.php |
|
Details | IPv4 | 1 | 216.128.145.196 |
|
Details | IPv4 | 1 | 194.55.224.9 |