Afraidgate: Major Exploit Kit Campaign Swaps Locky Ransomware for CryptXXX
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Model Domains - T1583.001 Domains - T1584.001 Exploits - T1587.004 Exploits - T1588.005 Ip Addresses - T1590.005 Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | e1a2efd7-c888-4061-87eb-c7341378d7b6 |
Fingerprint | 27b42d9b822d8af9 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | April 28, 2016, 8 p.m. |
Added to db | Jan. 18, 2023, 8 p.m. |
Last updated | Nov. 17, 2024, 8:43 p.m. |
Headline | Afraidgate: Major Exploit Kit Campaign Swaps Locky Ransomware for CryptXXX |
Title | Afraidgate: Major Exploit Kit Campaign Swaps Locky Ransomware for CryptXXX |
Detected Hints/Tags/Attributes | 33/2/36 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 10 | afraid.org |
|
Details | Domain | 1 | host.vivialvarez.com.ar |
|
Details | Domain | 1 | kw.projetoraizes.com.br |
|
Details | Domain | 1 | net.jacquieleebrasil.com.br |
|
Details | Domain | 1 | bintiye.helpthevets.org |
|
Details | Domain | 1 | mcimaildmz.dinnerplate.co.uk |
|
Details | Domain | 1 | candidulumbestuurlijk.newlandsierrarealestate.com |
|
Details | Domain | 1 | frageboegen-plletyksin.breastcanceroutreach.com |
|
Details | Domain | 1 | reikleivn-azarashi.orlandohomesbydevito.com |
|
Details | Domain | 1 | litigators.esteroscreen.com |
|
Details | Domain | 1 | qrwzoxcjatynejejsz.com |
|
Details | Domain | 1 | yfczmludodohkdqnij.com |
|
Details | Domain | 1 | ranetardinghap.com |
|
Details | Domain | 1 | cetinhechinhis.com |
|
Details | Domain | 1 | tedgeroatref.com |
|
Details | Domain | 1 | rerobloketbo.com |
|
Details | Domain | 1 | tonthishessici.com |
|
Details | Domain | 1 | allofuslikesforums.com |
|
Details | Domain | 1 | oqpwldjc.mjobrkn3.eu |
|
Details | File | 4 | widget.js |
|
Details | File | 62 | script.js |
|
Details | IPv4 | 1 | 185.118.164.42 |
|
Details | IPv4 | 1 | 85.25.160.124 |
|
Details | IPv4 | 1 | 192.169.189.167 |
|
Details | IPv4 | 1 | 192.169.190.97 |
|
Details | IPv4 | 1 | 209.126.120.8 |
|
Details | IPv4 | 1 | 104.193.252.241 |
|
Details | IPv4 | 1 | 95.211.205.228 |
|
Details | IPv4 | 1 | 5.199.141.203 |
|
Details | IPv4 | 1 | 93.190.141.27 |
|
Details | IPv4 | 1 | 95.211.205.218 |
|
Details | IPv4 | 1 | 104.193.252.236 |
|
Details | IPv4 | 1 | 162.244.34.11 |
|
Details | IPv4 | 1 | 207.182.148.92 |
|
Details | IPv4 | 1 | 85.25.79.211 |
|
Details | IPv4 | 2 | 217.23.6.40 |