O-UNC-036
· Published 16/03/2026 11:21 · Modified 16/03/2026 11:21
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 16/03/2026 11:21
- Modified
- 16/03/2026 11:21
- Updated at
- 16/03/2026 11:21
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 10 attack patterns (mitre), 29 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
Attack patterns (MITRE) (10)
-
T1587 usesDevelop Capabilities MITRE
-
T1595 usesActive Scanning MITRE
-
T1586 usesCompromise Accounts MITRE
-
T1566 usesPhishing MITRE
-
T1133 usesExternal Remote Services MITRE
-
T1589 usesGather Victim Identity Information MITRE
-
T1078 usesValid Accounts MITRE
-
T1592 usesGather Victim Host Information MITRE
-
T1498 usesNetwork Denial of Service MITRE
-
T1584 usesCompromise Infrastructure MITRE
Indicators (29)
-
emailclub.netindicates -
300bucks.netindicates -
letters.monsterindicates -
kakdela.netindicates -
lostspaceship.netindicates -
ultramail.proindicates -
gogomail.inkindicates -
wirelicker.comindicates -
postalbro.comindicates -
echat.restindicates -
e-boss.xyzindicates -
energymail.orgindicates