Watermark

CTI Telemetry

VirusTotal Analysis

Infostealer analysis by HudsonRock

254
🧠 Dispositivi infetti
250
🌐 Utenti compromessi
4
πŸ§‘β€πŸ’Ό Dipendenti compromessi
5
πŸ”‘ Password aziendali
398
πŸ”‘ Password users

RedLine 168
Lumma 134
Generic Stealer 31
Raccoon 62
StealC 34
Vidar 14
Azorult 2

https://webmail.weathersa.co.za/owa/auth/logon.aspx 4
ftp://ftp.weathersa.co.za/ 1

https://aviation.weathersa.co.za 107
https://recruitment.weathersa.co.za 59
http://aviation.weathersa.co.za 57
http://rsmc.weathersa.co.za/login.php 51
http://aviation.weathersa.co.za/ 29
https://β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/ 24
https://β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’β€’β€’β€’ 18
https://β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’ 11
http://β€’β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/ 10
https://β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’/ 9
https://β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’ 7
http://β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’β€’_β€’β€’β€’β€’β€’β€’β€’β€’.β€’β€’β€’ 7
http://β€’β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za 6
http://β€’β€’β€’β€’.weathersa.co.za 5
http://β€’β€’β€’β€’.weathersa.co.za 4
https://β€’β€’β€’β€’.weathersa.co.za/β€’β€’/β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’.β€’β€’β€’β€’β€’ 4
http://β€’β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za 2
https://β€’β€’β€’β€’β€’β€’.weathersa.co.za 2
https://β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’ 2
http://β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za 2
http://β€’β€’β€’β€’.weathersa.co.za/ 1
http://β€’β€’β€’.weathersa.co.za/ 1
http://β€’β€’β€’.weathersa.co.za/β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’.β€’β€’β€’ 1
https://β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’β€’.weathersa.co.za/ 1
https://β€’β€’β€’.weathersa.co.za/ 1
http://β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’β€’_β€’β€’β€’β€’β€’β€’β€’β€’.β€’β€’β€’ 1
https://β€’β€’β€’.weathersa.co.za 1
http://β€’β€’β€’.weathersa.co.za 1
http://β€’β€’β€’β€’β€’β€’.weathersa.co.za/β€’β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’/β€’β€’β€’β€’β€’.β€’β€’β€’ 1

Not Found 1
Windows Defender 3