PXA Stealer IOCs - SEC-1275-1
Tags
attack-pattern: | Domains - T1583.001 Domains - T1584.001 Python - T1059.006 |
Common Information
Type | Value |
---|---|
UUID | 692970e8-0e8b-4887-bf13-da1c54e8050a |
Fingerprint | 27bcfb889315904b |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Nov. 15, 2024, midnight |
Added to db | Nov. 15, 2024, 6:43 a.m. |
Last updated | Nov. 15, 2024, 6:43 a.m. |
Headline | PXA Stealer IOCs |
Title | PXA Stealer IOCs - SEC-1275-1 |
Detected Hints/Tags/Attributes | 9/1/26 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://1275.ru/ioc/8009/pxa-stealer-iocs/?mtm_campaign=rss |
URL Provider
Details | Provider | Source level domain |
---|---|---|
Details | 1275.ru | 1275.ru |
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 8 | ✔ | Архивы IOC - SEC-1275-1 | https://1275.ru/ioc/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 3 | tvdseo.com |
|
Details | Domain | 3 | synaptics.zip |
|
Details | File | 3 | cookie_ext.zip |
|
Details | File | 3 | synaptics.zip |
|
Details | sha256 | 1 | 707004559c8d625f2d4b296ede702def1f9f52cadf4c52dadc41f3077531d04f |
|
Details | sha256 | 1 | 782da8904a729971fab86286dd1f44e8de686b7bc66b855079381e1c9e97f6da |
|
Details | sha256 | 1 | 7db49da15fd159146fe869d049e030a4ecd0d605a762bea4cc4eb702a6ce9ee6 |
|
Details | sha256 | 1 | a9e3f6b9047b5320434bc7b64f4ba6c799d2b6919d41ed32e9815742f3c10194 |
|
Details | sha256 | 1 | bc15114841e39203b4e0f5d2cdeef11cc4eceba99eb0c3074a1c6d7b3968404a |
|
Details | sha256 | 1 | e689601d502cc0cd8017f9d6953ce7e201b2dad42f679dc33afa673249ea1aa4 |
|
Details | sha256 | 1 | fdad95329954e0085d992cba78188a26abd718797f4a83347ec402f70fe65269 |
|
Details | Url | 1 | https://tvdseo.com/file/adonis/adfnis_bot |
|
Details | Url | 1 | https://tvdseo.com/file/adonis/adonis_bot |
|
Details | Url | 1 | https://tvdseo.com/file/adonis/adonis_bot0 |
|
Details | Url | 1 | https://tvdseo.com/file/adonis/adonis_xw_enc |
|
Details | Url | 3 | https://tvdseo.com/file/pxa/cookie_ext.zip |
|
Details | Url | 1 | https://tvdseo.com/file/pxa/pxa_bot |
|
Details | Url | 1 | https://tvdseo.com/file/pxa/pxa_pure_enc |
|
Details | Url | 1 | https://tvdseo.com/file/stc/cookie_ext.zip |
|
Details | Url | 1 | https://tvdseo.com/file/stc/stc_bot |
|
Details | Url | 1 | https://tvdseo.com/file/stc/stc_oto |
|
Details | Url | 1 | https://tvdseo.com/file/stc/stc_pup |
|
Details | Url | 1 | https://tvdseo.com/file/stc/stc_pure.b64 |
|
Details | Url | 1 | https://tvdseo.com/file/stc/stc_pure_enc |
|
Details | Url | 1 | https://tvdseo.com/file/stc/stc_xw_enc |
|
Details | Url | 3 | https://tvdseo.com/file/synaptics.zip |