ASEC Weekly Phishing Email Threat Trends (April 16th, 2023 – April 22nd, 2023) - ASEC BLOG
Tags
cmtmf-attack-pattern: | Phishing For Information |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Credentials - T1589.001 Internal Spearphishing - T1534 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Phishing For Information - T1598 Server - T1583.004 Server - T1584.004 Software - T1592.002 |
Common Information
Type | Value |
---|---|
UUID | f65f7559-b097-44ff-9a9c-ffa1403ca08e |
Fingerprint | ce1e9c0a0d0e6bad |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | May 4, 2023, 8 a.m. |
Added to db | May 4, 2023, 1:50 a.m. |
Last updated | Nov. 12, 2024, 4:48 p.m. |
Headline | ASEC Weekly Phishing Email Threat Trends (April 16th, 2023 – April 22nd, 2023) |
Title | ASEC Weekly Phishing Email Threat Trends (April 16th, 2023 – April 22nd, 2023) - ASEC BLOG |
Detected Hints/Tags/Attributes | 59/3/103 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://asec.ahnlab.com/en/52102/ |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 17 | ✔ | ASEC | https://asec.ahnlab.com/en/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 2 | 20230419c985.dhl |
|
Details | Domain | 42 | co.kr |
|
Details | Domain | 2 | april.zip |
|
Details | Domain | 8 | quotation.zip |
|
Details | Domain | 4 | dhl.zip |
|
Details | Domain | 2 | 19-04-23.zip |
|
Details | Domain | 4 | test.novostroi21.ru |
|
Details | Domain | 59 | formspree.io |
|
Details | Domain | 47 | submit-form.com |
|
Details | Domain | 6 | zenkoren.itigo.jp |
|
Details | Domain | 4 | baltik-memorial.ru |
|
Details | Domain | 6 | www.btdpipe1ine.com |
|
Details | Domain | 4 | ingitek.ru |
|
Details | Domain | 2 | pallarsactiu.cat |
|
Details | Domain | 4 | ecstatic-chandrasekhar.185-236-228-67.plesk.page |
|
Details | Domain | 2 | submaxillary-torque.000webhostapp.com |
|
Details | Domain | 2 | constructedone.cf |
|
Details | Domain | 2 | excellent.co.il |
|
Details | Domain | 2 | trillion-thursday.000webhostapp.com |
|
Details | File | 8 | shippingdocs.htm |
|
Details | File | 24 | document.html |
|
Details | File | 2 | hwang.html |
|
Details | File | 2 | choi.html |
|
Details | File | 2 | shippingdhldocument01.html |
|
Details | File | 7 | awb.html |
|
Details | File | 3 | 2023.html |
|
Details | File | 9 | shipment.html |
|
Details | File | 2 | mt103_swiftcopy20231704367.pdf |
|
Details | File | 11 | pdf.html |
|
Details | File | 2 | securedmessageatt.htm |
|
Details | File | 8 | order.xls |
|
Details | File | 10 | notification.pdf |
|
Details | File | 2 | remittance_000020242.htm |
|
Details | File | 2 | quickbooks-payments-notification.pdf |
|
Details | File | 2 | dhl.htm |
|
Details | File | 2 | -fedex-hndv-iue65hf-nmkcfg.htm |
|
Details | File | 4 | original.html |
|
Details | File | 2 | invoice_2023.zip |
|
Details | File | 2 | 198945.html |
|
Details | File | 2 | p06846690.html |
|
Details | File | 7 | 8347630147.htm |
|
Details | File | 10 | kr.htm |
|
Details | File | 18 | order.html |
|
Details | File | 5 | quotation.html |
|
Details | File | 2 | signed.html |
|
Details | File | 2 | shippingdocs.html |
|
Details | File | 2 | huug2336ed.gz |
|
Details | File | 2 | payment3798637712pdf.7z |
|
Details | File | 2 | quo-tkendab-0147-001.rar |
|
Details | File | 2 | 213497664-030339-sanlccjavap0003-1.pdf |
|
Details | File | 2 | changes.arj |
|
Details | File | 6 | 00_20230320.pdf |
|
Details | File | 2 | april.zip |
|
Details | File | 12 | doc.docx |
|
Details | File | 2 | 2023041907123719.pdf |
|
Details | File | 2 | booking_379016630212pdf.7z |
|
Details | File | 2 | payment_advise17042023.zip |
|
Details | File | 2 | img_6038028301pdf.7z |
|
Details | File | 8 | quotation.zip |
|
Details | File | 2 | img_50112_99012pdf.7z |
|
Details | File | 2 | 2023_9005453221298908786.gz |
|
Details | File | 2 | _order_001.7z |
|
Details | File | 4 | dhl.zip |
|
Details | File | 2 | textilepr1a.pdf |
|
Details | File | 2 | 310377fiba00541.arj |
|
Details | File | 2 | 19-04-23.zip |
|
Details | File | 7 | 2023.gz |
|
Details | File | 2 | halkbank_ekstre_20231904_073809_405251-pdf.tar |
|
Details | File | 2 | wild__images.gif |
|
Details | File | 4 | myscene.jpg |
|
Details | File | 2 | fuck_pctrs.jpg |
|
Details | File | 4 | super_act.gif |
|
Details | File | 2 | privpic.gif |
|
Details | File | 2 | the_photos.jpg |
|
Details | File | 2 | superpic.jpg |
|
Details | File | 2 | prv_images.gif |
|
Details | File | 2 | wild-phot.gif |
|
Details | File | 2 | great-plp.jpg |
|
Details | File | 2 | myaction.exe |
|
Details | File | 2 | coolimgs.exe |
|
Details | File | 2 | privatepctrs.gif |
|
Details | File | 2 | prv_scene.gif |
|
Details | File | 2 | cool__scene.gif |
|
Details | File | 2 | sexpic.gif |
|
Details | File | 2 | seximg.gif |
|
Details | File | 4 | sexphotos.jpg |
|
Details | File | 2 | xlss.php |
|
Details | MITRE ATT&CK Techniques | 100 | T1598 |
|
Details | MITRE ATT&CK Techniques | 83 | T1534 |
|
Details | Url | 2 | https://test.novostroi21.ru/aomzq/fccn/xlss.php |
|
Details | Url | 20 | https://formspree.io/f/myyazkbv |
|
Details | Url | 2 | https://submit-form.com/feu5zfzq |
|
Details | Url | 2 | https://zenkoren.itigo.jp//cgi-bin/fdx/fedex.php |
|
Details | Url | 4 | http://baltik-memorial.ru/wp-includes/ex/excel.php |
|
Details | Url | 4 | https://www.btdpipe1ine.com/ke/fdpxogur23f.php |
|
Details | Url | 2 | http://ingitek.ru/bitrix/admin/csssg/xlss.php |
|
Details | Url | 2 | https://pallarsactiu.cat/team/resultbox1.php |
|
Details | Url | 4 | https://ecstatic-chandrasekhar.185-236-228-67.plesk.page/chkky/adhl.php |
|
Details | Url | 2 | https://submaxillary-torque.000webhostapp.com/pdf.php |
|
Details | Url | 2 | https://constructedone.cf/chiel/dlpy.php |
|
Details | Url | 2 | https://test.novostroi21.ru/isreal/mae/xlss.php |
|
Details | Url | 2 | https://excellent.co.il/wp-contact/xtremsic/justgm.php |
|
Details | Url | 2 | https://trillion-thursday.000webhostapp.com/itgg/adbn.php |