黑白通吃:Glutton木马潜伏主流PHP框架,隐秘侵袭长达1年 | CTF导航
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | b6a0ef02-b7e3-4697-a36e-f41285ff88b1 |
Fingerprint | 135aa90f85e05e0b |
Analysis status | DONE |
Considered CTI value | -2 |
Text language | |
Published | Oct. 26, 2024, midnight |
Added to db | Dec. 10, 2024, 8:30 a.m. |
Last updated | Dec. 17, 2024, 8:41 a.m. |
Headline | 黑白通吃:Glutton木马潜伏主流PHP框架,隐秘侵袭长达1年 |
Title | 黑白通吃:Glutton木马潜伏主流PHP框架,隐秘侵袭长达1年 | CTF导航 |
Detected Hints/Tags/Attributes | 9/2/8 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://www.ctfiot.com/219224.html |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 426 | ✔ | CTF导航 | https://www.ctfiot.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 6 | blog.xlab.qianxin.com |
|
Details | File | 2 | 0检测的恶意php文件init_task.txt |
|
Details | File | 2 | 恶意代码l0ader_shell位于thinkphp框架中的app.php |
|
Details | File | 3 | cc_20241026_175636.tar |
|
Details | File | 6 | blog.xla |
|
Details | IPv4 | 6 | 172.247.127.210 |
|
Details | IPv4 | 5 | 156.251.163.120 |
|
Details | Url | 1 | https://blog.xlab.qianxin.com |