Sponsored by Hudson Rock – Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks
| Favicon | Title | Type | Available | Last Visit | Server Info | FQDN | |
|---|---|---|---|---|---|---|---|
|
|
THIS WEBSITE HAS BEEN SEIZED | No | 2026-04-28T07:21:13 |
alphvmmm27o3abo3r2mlmjrpdmzle3rykajqc5xsj7j7ejksbpsa36ad.onion
|
|||
|
|
No | 2026-05-14T12:40:43 |
2cuqgeerjdba2rhdiviezodpu3lc4qz2sjf4qin6f7std2evleqlzjid.onion
|
||||
|
|
No | 2026-04-28T07:24:27 |
vqifktlreqpudvulhbzmc5gocbeawl67uvs2pttswemdorbnhaddohyd.onion
|
||||
|
|
THIS WEBSITE HAS BEEN SEIZED | No | 2026-04-28T07:26:59 |
alphvuzxyxv6ylumd2ngp46xzq3pw6zflomrghvxeuks6kklberrbmyd.onion
|
| Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Exfiltration | Impact |
|---|---|---|---|---|---|---|---|
| Valid Accounts | Scheduled Task/Job | Valid Accounts | Valid Accounts | Obfuscated Files or Information | OS Credential Dumping: LSASS Memory | Automated Exfiltration | Data Destruction |
| External Remote Services | Command and Scripting Interpreter: PowerShell | Server Software Component | Access Token Manipulation: Create Process with Token | Masquerading | Unsecured Credentials | Data Transfer Size Limits | Data Encrypted for Impact |
| Exploit Public-Facing Application | Command and Scripting Interpreter: Windows Command Shell | Abuse Elevation Control Mechanism: Bypass User Account Control | Indicator Removal: Clear Windows Event Logs | Credentials from Password Stores | Exfiltration Over C2 Channel | Service Stop | |
| Windows Management Instrumentation | Modify Registry | Exfiltration Over Alternative Protocol: Exfiltration Over Asymmetric Encrypted Non-C2 Protocol | Inhibit System Recovery | ||||
| Native API | Deobfuscate/Decode Files or Information | Exfiltration Over Web Service: Exfiltration to Cloud Storage | Network Denial of Service | ||||
| System Services: Service Execution | Virtualization/Sandbox Evasion | ||||||
| Impair Defenses: Disable or Modify Tools |