新黑产团伙“黑猫”技术细节曝光 | CTF导航
Tags
Common Information
Type Value
UUID ce3a890e-3f76-49ca-a30b-47ba86ab0e29
Fingerprint 8ffbc71797d7377b
Analysis status DONE
Considered CTI value -2
Text language
Published Oct. 1, 2024, midnight
Added to db Oct. 28, 2024, 1:01 p.m.
Last updated Nov. 17, 2024, 6:31 p.m.
Headline 新黑产团伙“黑猫”技术细节曝光
Title 新黑产团伙“黑猫”技术细节曝光 | CTF导航
Detected Hints/Tags/Attributes 1/0/89
Source URLs
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 426 CTF导航 https://www.ctfiot.com/feed 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 5
zh-csvpn.com
Details Domain 5
transocks-vpn.com
Details Domain 3
cdn-down.cdndown.shop
Details Domain 1
aijiasu.com
Details Domain 5
ajsvpn.com
Details Domain 5
zh-mexc.com
Details Domain 5
zh-potato.com
Details Domain 5
potato-zh.com
Details Domain 5
cs-vpn.com
Details Domain 5
fl-vpn.com
Details Domain 3
qobddze.cn
Details Domain 5
oeokx.cn
Details Domain 5
okx-client.cn
Details Domain 5
zh-okex.cn
Details Domain 5
zh-gateio.cn
Details Domain 3
aicoinzh.com
Details Domain 5
tradingview-en.com
Details Domain 5
ayicoin.com
Details Domain 5
nbxieheng.cn
Details Domain 5
todesk-zh.com
Details Domain 3
telegram-apk.com
Details Domain 3
aicoims.com
Details Domain 5
cn-wps.com
Details Domain 5
i4.com.vn
Details Domain 3
titamic.com
Details Domain 3
simmem.com
Details Domain 3
golomee.com
Details Domain 3
mmm3.oss-cn-hongkong.aliyuncs.com
Details Domain 1
ibusenum.zip
Details Domain 6
zhcn.down-cdn.com
Details Domain 1
todeskx64.zip
Details Domain 3
speedin-x64.zip
Details Domain 2
gateio-win64.zip
Details Domain 2
chromex64.zip
Details Domain 3
www.heimao-131.com
Details Domain 3
www.heimao-132.com
Details Domain 5
www.heimao-134.com
Details Domain 1
longfeng1688.oss-cn-hongkong.aliyuncs.com
Details Domain 3
paopaoliaotian.s3.ap-east-1.amazonaws.com
Details Domain 4
softs-downloads.oss-ap-southeast-1.aliyuncs.com
Details Domain 3
mm.bitbrowser.me
Details File 1
telegram_1119.apk
Details File 1
最后下载带有后门程序的安装包kuaivpn-n-3.msi
Details File 1
ibusenum.zip
Details File 1
todeskx64.zip
Details File 1
speedin-x64.zip
Details File 2
gateio-win64.zip
Details File 2
chromex64.zip
Details File 2
mexc_winx64.zip
Details File 1
ajiasu_x64.zip
Details File 2
potato_latestx64.zip
Details File 2
transocks_x64.zip
Details File 2
feilian_latestx64.zip
Details File 1
wps_setup_1688.exe
Details File 1
off_wps_setup_win-x64.exe
Details File 3
aisi.msi
Details File 153
config.json
Details md5 1
dddbd75aab7dab2bde4787001fd021d3
Details IPv4 3
27.124.43.226
Details IPv4 3
206.238.40.164
Details IPv4 3
103.215.76.136
Details IPv4 4
202.146.220.95
Details IPv4 1
8.210.11.47
Details IPv4 1
47.239.126.185
Details Url 3
https://zh-csvpn.com
Details Url 3
https://transocks-vpn.com
Details Url 1
https://cdn-down.cdndown.shop/telegram_1119.apk
Details Url 1
http://mmm3.oss-cn-hongkong.aliyuncs.com/ibusenum.zip
Details Url 1
http://zhcn.down-cdn.com/todeskx64.zip
Details Url 1
https://zhcn.down-cdn.com/todeskx64.zip
Details Url 3
http://zhcn.down-cdn.com/speedin-x64.zip
Details Url 2
http://zhcn.down-cdn.com/gateio-win64.zip
Details Url 2
http://zhcn.down-cdn.com/chromex64.zip
Details Url 2
https://zhcn.down-cdn.com/chromex64.zip
Details Url 2
http://zhcn.down-cdn.com/mexc_winx64.zip
Details Url 1
https://zhcn.down-cdn.com/mexc_winx64.zip
Details Url 1
http://zhcn.down-cdn.com/ajiasu_x64.zip
Details Url 1
https://zhcn.down-cdn.com/ajiasu_x64.zip
Details Url 2
https://zhcn.down-cdn.com/potato_latestx64.zip
Details Url 2
https://zhcn.down-cdn.com/transocks_x64.zip
Details Url 2
https://zhcn.down-cdn.com/feilian_latestx64.zip
Details Url 1
https://www.heimao-131.com/jhpesyw7cw
Details Url 1
https://www.heimao-132.com/swd8yn5izb
Details Url 2
https://www.heimao-134.com/swd8yn5izb
Details Url 2
https://www.heimao-134.com/4xjskvzrux
Details Url 1
https://longfeng1688.oss-cn-hongkong.aliyuncs.com/wps_setup_1688.exe
Details Url 1
https://paopaoliaotian.s3.ap-east-1.amazonaws.com/wps/off_wps_setup_win-x64.exe
Details Url 2
https://softs-downloads.oss-ap-southeast-1.aliyuncs.com/aisi.msi
Details Url 1
http://cdn-down.cdndown.shop/config.json