SilverFox
· Published 21/12/2025 09:56 · Modified 21/12/2025 09:56
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 21/12/2025 09:56
- Modified
- 21/12/2025 09:56
- Updated at
- 21/12/2025 09:56
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 2 reports, 33 attack patterns (mitre), 6 malware, 2 sectors, 3 countries, 156 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (2)
-
4 MITREs 200 Observables 1 APTPublished 18/07/2025 07:34 · Modified 18/07/2025 08:25
-
22 MITREs 6 Malwares 200 Observables 1 APTPublished 16/01/2025 11:00 · Modified 16/01/2025 12:00
Attack patterns (MITRE) (33)
-
T1057 usesProcess Discovery
-
T1120 usesPeripheral Device Discovery
-
T1114 usesEmail Collection
-
T1036.005 usesMatch Legitimate Resource Name or Location
-
T1059 usesCommand and Scripting Interpreter
-
T1071 usesApplication Layer Protocol
-
T1140 usesDeobfuscate/Decode Files or Information
-
T1497 usesVirtualization/Sandbox Evasion
-
T1016 usesSystem Network Configuration Discovery
-
T1082 usesSystem Information Discovery
-
T1078 usesValid Accounts
-
T1204.001 usesMalicious Link
Malware (6)
-
Redline usesFamilyPublished 08/05/2026 11:31 · Modified 08/05/2026 11:31
-
Gh0stRAT usesFamilyPublished 14/04/2026 08:54 · Modified 14/04/2026 08:54
-
RemKos RAT usesFamilyPublished 16/01/2025 11:00 · Modified 16/01/2025 11:00
-
ValleyRAT usesFamilyPublished 08/06/2026 10:30 · Modified 08/06/2026 10:30
-
Lumma Stealer usesFamilyPublished 08/06/2026 19:36 · Modified 08/06/2026 19:36
-
Farfli usesFamilyPublished 06/03/2025 12:31 · Modified 06/03/2025 12:31
Sectors (2)
- Finance targets
- Technology targets
Countries (3)
- Malaysia targets
- China targets
- Hong Kong targets
Indicators (156)
-
sfztgz.comindicates -
supurinto.comindicates -
luoboo.onlineindicates -
indian19.comindicates -
fuainfagk.awsindicates -
kdeweb.comindicates -
clashcx.comindicates -
ecprss.comindicates -
teleqcrmn.fitindicates -
ixordiga.comindicates -
cialisnn.comindicates -
nuro-art.comindicates