PULSE NAME
Stealer Malware (Hash / C2)
WHITE IndoOpenThreatXchange 2024-07-24 Modified: 2025-01-15
802
IOCs
HIGH VOLUME
Malware that stealing capabilities like Vidar, Raccoon, Mars, and Redline (will update in the future). any detection from internal network from this otx pulse indicates data leak. please fullscan your endpoint using antivirus and make sure change your all password. Family : Steal C Malware; Redline Stealer; Flame Stealer; Lumma Stealer; Cheana Stealer; Gomorra Stealer; Meduza Stealer; Hawkeye Malware; Node Stealer; Amatera Stealer ; Last Update : 16/12/2024 (Update Lumma Stealer, Add Amatera Stealer, Telegram Stealer and other)
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (13 / 802 total)
All IPv4 FileHash-MD5 FileHash-SHA1 FileHash-SHA256 domain hostname URL
TYPEINDICATORDESCRIPTIONCREATED
hostname thomas-partly.gl.at.ply.gg 2024-08-02
hostname cetkom.yunethosting.rs 2024-09-23
hostname panel.cheater-zone.com 2024-09-23
hostname secure.biiclick.com 2024-09-23
hostname team-x.work.gd 2024-09-23
hostname 53d5-66-154-102-195.ngrok-free.app 2024-09-23
hostname cyberwistee.000webhostapp.com 2024-09-23
hostname eerier-safety.000webhostapp.com 2024-09-23
hostname ghostghostcom.000webhostapp.com 2024-09-23
hostname hasidic-lettering.000webhostapp.com 2024-09-23
hostname jjffhdjbjncsutyeiks.000webhostapp.com 2024-09-23
hostname ttykok.320.io 2024-11-15
hostname customer.sellauth.com 2024-12-13