Wagmi
· Published 21/12/2025 13:23 · Modified 21/12/2025 13:23
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 21/12/2025 13:23
- Modified
- 21/12/2025 13:23
- Updated at
- 21/12/2025 13:23
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 22 attack patterns (mitre), 4 malware, 93 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
12 MITREs 4 Malwares 96 Observables 1 APTPublished 08/04/2025 10:29 · Modified 08/04/2025 11:50
Attack patterns (MITRE) (22)
-
T1005 usesData from Local System
-
T1057 usesProcess Discovery
-
T1140 usesDeobfuscate/Decode Files or Information
-
T1027 usesObfuscated Files or Information
-
T1036 usesMasquerading
-
T1497 usesVirtualization/Sandbox Evasion
-
T1055 usesProcess Injection
-
T1059.005 usesVisual Basic
-
T1566 usesPhishing
-
T1083 usesFile and Directory Discovery
-
T1082 usesSystem Information Discovery
-
T1573 usesEncrypted Channel
-
T1129 usesShared Modules
-
T1584 usesCompromise Infrastructure
-
T1553.002 usesCode Signing
-
T1132 usesData Encoding
-
T1071 usesApplication Layer Protocol
-
T1012 usesQuery Registry
-
T1074 usesData Staged
-
T1056 usesInput Capture
-
T1552 usesUnsecured Credentials
-
T1547.009 usesShortcut Modification
Malware (4)
-
LummaC2 usesFamilyPublished 16/01/2026 20:33 · Modified 16/01/2026 20:33
-
AMOS usesFamilyPublished 18/05/2026 17:52 · Modified 18/05/2026 17:52
-
Hijackloader usesFamilyPublished 10/06/2026 11:58 · Modified 10/06/2026 11:58
-
Rhadamanthys usesFamilyPublished 29/04/2026 02:24 · Modified 29/04/2026 02:24
Indicators (93)
-
swdgame.xyzindicates -
kosmosgrid.comindicates -
splarecall.xyzindicates -
aperoyaleplay.comindicates -
animaliagame.xyzindicates -
playgunrush.xyzindicates -
us005web-zoom.usindicates -
strikeforcegame.xyzindicates -
roarlandplay.xyzindicates -
animaliagame.netindicates -
roboversegame.xyzindicates -
gamehosting.shopindicates -
1ae7cdd81585233bfb3871385c67dd7fb43bfb2231ab2af5aded08d49c490f16indicates -
playbattleforge.orgindicates -
us007web-zoom.usindicates -
d516515e923875ae22b6325bba9e53f5fa531aa7c6c7a386fb380f3ae92b5009indicates -
us006web-zoom.usindicates -
us08web-zoom.usindicates -
myultimate.xyzindicates -
animalia-game.xyzindicates -
154af50ab1f4b14e10b2532574c3856bbdadaabb042ade5bf39a7153cb9e89f8indicates -
jungle-legends.comindicates -
rocketlegacygame.comindicates -
us05webs-zoom.pwindicates -
jungle-legends.ioindicates -
playultimate.xyzindicates -
apestarshq.ioindicates -
junglelegends.ioindicates -
roarland.orgindicates -
strikeleague.xyzindicates -
splare.ccindicates -
us003webzoom.usindicates -
2005bd6b7613d7c6bc8ea6e179f498b05feb185237511eebce44a5d3d87662ecindicates -
9f4e52d4dfb7ebf09e0371a92280ad21519030f7032077cba125903454dd211dindicates -
us004web-zoom.usindicates -
apestars.ioindicates -
showdowngame.ioindicates -
75ba94534ea1433f70c57de43b27b9dc1c9f310e004fa5c70ad3e6b79650328aindicates -
strikeleaguenft.xyzindicates -
junglelegends.xyzindicates -
mybattleforge.xyzindicates -
playroboverse.xyzindicates -
us050web-zoom.usindicates -
playbattleforge.xyzindicates -
playroarland.xyzindicates -
http://gamehosting.shop/apiindicates -
astriia.comindicates -
battleforge.ccindicates -
playrocketlegacy.xyzindicates -
us002webzoom.usindicates -
playrocketrumble.xyzindicates -
playswd.xyzindicates -
playrobovrs.xyzindicates -
http://asoonworld.com/macshare.phpindicates -
gunrushgame.xyzindicates -
e0e0b3d2890053cbdf84d6c3177e267d8f767f4b2b6d6e5fb2de5860b0a09ee2indicates -
splarecall.comindicates -
38eff554ddee7664cd8b1c003ddf96f7ebe608acbe236b74e9045fd831a0c100indicates -
playstrikeforcenow.comindicates -
playshowdown.xyzindicates -
aperoyaleplay.ioindicates -
us01web-zoom.usindicates -
rocketrumblesol.xyzindicates -
ultimategame.xyzindicates -
roarland.xyzindicates -
apestarshq.netindicates -
playanimalia.xyzindicates -
battleultimate.xyzindicates -
us008web-zoom.usindicates -
ecdd79c3228b8f354e6c0148c00038790bd8a874428dc9b3f57111e753d3565findicates -
42735792cc7e76b7439751d4aa673d5bd61d100f8d4de42c9084db46e2a1dbf1indicates -
zoom.us50web.xyzindicates -
http://kosmosgrid.com/macshare.phpindicates -
rocketlegacy.xyzindicates -
1d879fb13ed76a9892d8e9ea99aa6817cd1248d409956c1ab1b47c2f79c103bdindicates -
apestarshq.comindicates -
asoonworld.comindicates -
ultimateplay.xyzindicates -
playgunrushnow.xyzindicates -
splarecall.ccindicates -
rocketrumble.xyzindicates -
aperoyale.netindicates -
playapestars.comindicates -
us09web-zoom.usindicates -
playswdbtc.xyzindicates -
rocketlegacy.netindicates -
roarland.ioindicates -
splare.ioindicates -
splare.xyzindicates -
apestarshq.orgindicates -
apestarshq.xyzindicates -
rocketlegacy.ioindicates -
gunrush.xyzindicates