Analyzing Latest WhatsApp Scam Leaking S3 Bucket
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Javascript - T1059.007 Phishing - T1660 Phishing - T1566 Whois - T1596.002 |
Common Information
Type | Value |
---|---|
UUID | 618d5f1e-73a3-433e-a8ea-4007a44f3618 |
Fingerprint | 8ac410539b775537 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Jan. 18, 2023, 7:09 p.m. |
Added to db | Jan. 18, 2023, 8:58 p.m. |
Last updated | Oct. 16, 2024, 3:21 a.m. |
Headline | Analyzing Latest WhatsApp Scam Leaking S3 Bucket |
Title | Analyzing Latest WhatsApp Scam Leaking S3 Bucket |
Detected Hints/Tags/Attributes | 23/2/11 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 167 | ✔ | Cybersecurity on Medium | https://medium.com/feed/tag/cybersecurity | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | amaxxxxxx.xyz |
|
Details | Domain | 1 | ccwexxxxx.xyz |
|
Details | Domain | 1 | cdn-bimi.akamaized.net |
|
Details | File | 1 | tb.php |
|
Details | File | 1 | map.png |
|
Details | File | 11 | sample.txt |
|
Details | Url | 1 | http://amaxxxxxx.xyz/amazonhz/tb.php?v=ss1616659 |
|
Details | Url | 1 | https://ccwexxxxx.xyz/amazonhz/tb.php?v=ss1616675 |
|
Details | Url | 1 | https://gkjow.yourprizeiswxxxxxxxx.net/c/f83bb5674dd1bf80?s1=72530&s2=1249598&s3=10009&s5=backuser&click_id=mte1ns0xoty0&iexpp=1&j1=1&j3=1 |
|
Details | Url | 1 | https://cdn-bimi.akamaized.net |
|
Details | Url | 1 | https://cdn-bimi.akamaized.net/landings/206101/1614865415/images/map.png |