More on Dnsden[.]biz Swipers and Radix Obfuscation
Tags
attack-pattern: | Domains - T1583.001 Domains - T1584.001 Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 |
Common Information
Type | Value |
---|---|
UUID | f12c20f7-6649-470b-95da-b371ca7e20c1 |
Fingerprint | 857d01e96abe45c0 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | March 19, 2019, 1:09 p.m. |
Added to db | Jan. 18, 2023, 8:54 p.m. |
Last updated | Nov. 17, 2024, 11:40 p.m. |
Headline | More on Dnsden[.]biz Swipers and Radix Obfuscation |
Title | More on Dnsden[.]biz Swipers and Radix Obfuscation |
Detected Hints/Tags/Attributes | 19/1/42 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 2 | dnsden.biz |
|
Details | Domain | 538 | pic.twitter.com |
|
Details | Domain | 1 | checkip.biz |
|
Details | Domain | 1 | logistic.tw |
|
Details | Domain | 2 | cloudservice.tw |
|
Details | File | 3 | a.js |
|
Details | File | 3 | b.js |
|
Details | File | 3 | d.js |
|
Details | File | 7 | e.js |
|
Details | File | 3 | universal.js |
|
Details | File | 218 | min.js |
|
Details | File | 1206 | index.php |
|
Details | File | 1 | p.js |
|
Details | File | 2 | s.js |
|
Details | File | 1 | items.js |
|
Details | File | 4 | jquery.php |
|
Details | IPv4 | 1 | 203.24.187.6 |
|
Details | IPv4 | 1 | 203.24.187.7 |
|
Details | IPv4 | 1 | 185.214.164.106 |
|
Details | IPv4 | 1 | 185.214.164.113 |
|
Details | Url | 1 | http://dnsden.biz/a.js |
|
Details | Url | 1 | http://dnsden.biz/b.js |
|
Details | Url | 1 | http://dnsden.biz/d.js |
|
Details | Url | 1 | http://dnsden.biz/e.js |
|
Details | Url | 1 | http://dnsden.biz/js/e.js |
|
Details | Url | 1 | http://dnsden.biz/js/universal.js |
|
Details | Url | 1 | http://dnsden.biz/js/jquery-1.9.2.min.js |
|
Details | Url | 1 | http://dnsden.biz/api/index.php |
|
Details | Url | 1 | http://checkip.biz/e.js |
|
Details | Url | 1 | http://checkip.biz/b.js |
|
Details | Url | 1 | http://checkip.biz/d.js |
|
Details | Url | 1 | http://checkip.biz/p.js |
|
Details | Url | 1 | http://checkip.biz/s.js |
|
Details | Url | 1 | http://checkip.biz/js/e.js |
|
Details | Url | 1 | http://checkip.biz/js/universal.js |
|
Details | Url | 1 | http://checkip.biz/js/jquery-1.9.2.min.js |
|
Details | Url | 1 | http://checkip.biz/payment/index.php |
|
Details | Url | 1 | https://logistic.tw/js/jquery-1.9.2.min.js |
|
Details | Url | 1 | https://logistic.tw/payment/index.php |
|
Details | Url | 1 | https://logistic.tw/skin/items.js |
|
Details | Url | 1 | https://cloudservice.tw/payment/index.php |
|
Details | Url | 2 | https://cloudservice.tw/lib/jquery.php |