📃Title: Spear-Phishing Stealer Targeting Malaysian: HSBC E-Mail Analysis
📅Date: 2023-09-25
🔗References:

🔖Rectifyq Taxonomies:

🔖MISP Galaxies:

  • sector=“Bank”
  • mitre-attack-pattern=[]

MISP event uuid: 16cf1b00-dd85-4dec-a1f6-bb7bcf8603e4

Indicator of Compromise (IoCs)

type,value,comment
url, https://northuistcottage.com/test.php, ''
url, https://northuistcottage.com/svr.php, ''
url, https://marccos.com/test.php, ''
url, https://bometome.com/svr.php, ''
url, https://aadcdn.msauth.net/, ''
ip-dst, 13.107.246.38, ''
hostname, mout.kundenserver.de, ''
ip-dst, 212.227.126.187, ''
hostname, mrelayeu.kundenserver.de, ''
ip-dst, 50.114.60.104, ''
domain, kundenserver.de, ''

Full IOCs available in Rectifyq's MISP```