Sponsored by Hudson Rock – Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks
| Favicon | Title | Type | Available | Last Visit | Server Info | FQDN | |
|---|---|---|---|---|---|---|---|
|
|
No | 2026-04-28T07:21:48 |
cuba4mp6ximo2zlo.onion
|
||||
|
|
Cuba | No | 2026-04-28T07:22:15 |
cuba4ikm4jakjgmkezytyawtdgr2xymvy6nvzgw5cglswg3si76icnqd.onion
|
| Discovery | RMM Tools | Defense Evasion | Credential Theft | OffSec | Networking | LOLBAS | Exfiltration |
|---|---|---|---|---|---|---|---|
|
|
NetSupport
|
Avast Anti-Rootkit driver
|
Mimikatz
|
Cobalt Strike
Meterpreter
|
Termite
|
PsExec
|
|
| Initial Access | Execution | Defense Evasion | Credential Access | Discovery | Lateral Movement | Command and Control |
|---|---|---|---|---|---|---|
| Valid Accounts: Local Accounts | Command and Scripting Interpreter: PowerShell | Masquerading: Match Legitimate Name or Location | Remote Services: External Remote Services | Network Configuration Discovery: Network Connection Enumeration | External Remote Services | Application Layer Protocol: Web Protocols |
| External Remote Services | Command and Scripting Interpreter: Windows Command Shell | Exploitation for Privilege Escalation | Exploitation for Credential Access | Remote System Discovery | Tool Transfer | Application Layer Protocol: DNS |
| Native API | Process Discovery | Multi-hop Proxy | ||||
| User Execution: Malicious File | File and Directory Discovery | Remote Desktop Protocol | ||||
| System Services: Service Execution | Time Discovery | |||||
| Network Share Discovery |
| Type | IOC |
|---|---|
Email
|
admin@cuba-supp.com
|
Email
|
cuba_support@exploit.im
|
Email
|
roselondon@cock.li
|