Attacks on Closed WordPress Plugins
Tags
attack-pattern: | Domains - T1583.001 Domains - T1584.001 Malware - T1587.001 Malware - T1588.001 Vulnerabilities - T1588.006 Scripting - T1064 Scripting |
Common Information
Type | Value |
---|---|
UUID | a27448b1-5a18-4453-a39a-fd5a2850586e |
Fingerprint | d878921a8875bed8 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | April 10, 2019, 12:17 p.m. |
Added to db | Feb. 17, 2023, 9:19 p.m. |
Last updated | Nov. 18, 2024, 4:21 p.m. |
Headline | Attacks on Closed WordPress Plugins |
Title | Attacks on Closed WordPress Plugins |
Detected Hints/Tags/Attributes | 13/1/9 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://blog.sucuri.net/2019/04/attacks-on-closed-wordpress-plugins.html |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 359 | pastebin.com |
|
Details | Domain | 1 | clevertrafficincome.com |
|
Details | Domain | 1 | hellofromhony.org |
|
Details | Domain | 1 | notifymepush.info |
|
Details | Domain | 1 | pushmeandtouchme.info |
|
Details | File | 3 | admin.js |
|
Details | File | 28 | admin-ajax.php |
|
Details | IPv4 | 1 | 140.143.195.86 |
|
Details | Url | 1 | https://pastebin.com/raw/heke9uqn |