Banshee
· Published 21/12/2025 09:49 · Modified 21/12/2025 09:49
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 21/12/2025 09:49
- Modified
- 21/12/2025 09:49
- Updated at
- 21/12/2025 09:49
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 22 attack patterns (mitre), 2 malware, 24 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
22 MITREs 2 Malwares 25 Observables 1 APTPublished 09/01/2025 15:08 · Modified 09/01/2025 15:41
Attack patterns (MITRE) (22)
-
T1082 usesSystem Information Discovery
-
T1113 usesScreen Capture
-
T1005 usesData from Local System
-
T1083 usesFile and Directory Discovery
-
T1053 usesScheduled Task/Job
-
T1056.001 usesKeylogging
-
T1119 usesAutomated Collection
-
T1564.001 usesHidden Files and Directories
-
T1057 usesProcess Discovery
-
T1070.004 usesFile Deletion
-
T1547.001 usesRegistry Run Keys / Startup Folder
-
T1016 usesSystem Network Configuration Discovery
-
T1059.002 usesAppleScript
-
T1033 usesSystem Owner/User Discovery
-
T1115 usesClipboard Data
-
T1012 usesQuery Registry
-
T1543.001 usesLaunch Agent
-
T1555 usesCredentials from Password Stores
-
T1087 usesAccount Discovery
-
T1059.004 usesUnix Shell
-
T1204.002 usesMalicious File
-
T1518 usesSoftware Discovery
Malware (2)
-
Banshee Stealer usesFamilyPublished 09/01/2025 15:08 · Modified 09/01/2025 15:08
-
Lumma Stealer usesFamilyPublished 08/06/2026 19:36 · Modified 08/06/2026 19:36
Indicators (24)
-
b978c70331fc81804dea11bf0b334aa324d94a2540a285ba266dd5bbfbcbc114indicates -
1dcf3b607d2c9e181643dd6bf1fd85e39d3dc4f95b6992e5a435d0d900333416indicates -
dilemmadu.siteindicates -
oxygen.solutionsindicates -
d04f71711e7749a4ff193843ae9ce852c581e55eaf29b8eec5b36c4b9c8699c2indicates -
westar.ioindicates -
fotor.softwareindicates -
cdfbcb3d850713c49d451b3e80fb8507f86ba4ad9385e083c2a2bf8d11adc4fbindicates -
forbidstow.siteindicates -
data.countryindicates -
alden.ioindicates -
seallysl.siteindicates -
servicedny.siteindicates -
coincapy.comindicates -
d8ecc92571b3bcd935dcab9cdbeda7c2ebda3021dda013920ace35d294db07beindicates -
goalyfeastz.siteindicates -
ce371a92e905d12cb16b5c273429ae91d6ff5485dda04bfedf002d2006856038indicates -
authorisev.siteindicates -
faulteyotk.siteindicates -
opposezmny.siteindicates -
00c68fb8bcb44581f15cb4f888b4dec8cd6d528cacb287dc1bdeeb34299b8c93indicates -
api7.cfdindicates -
3bcd41e8da4cf68bb38d9ef97789ec069d393306a5d1ea5846f0c4dc0d5beaabindicates -
contemteny.siteindicates