IOC Radar
TLP:WHITE17 IOCs

AI brands as bait: How threat actors are using the AI hype in social engineering

MT
Microsoft Threat Intelligence
Published June 8, 2026Original Report

Malware Families

Diamond Model

SOCIAL AXISTECHNOLOGY AXISADVERSARYunknownINFRASTRUCTUREservicing.pureplantcr…pan.rongtv.xyzhttp://dash.awaydoubl…CAPABILITYLummaVidarVICTIMunknown
Adversary
Infrastructure(6)
Capability(2)
Victim

5W+H Threat Analysis

Analysis unavailable

Indicators of Compromise

Indicators of Compromise17

TypeIndicatorConfidenceScoreFirst Seen
Domainservicing.pureplantcravings.com
aptespionageintel-blog
High
58
Jun 8, 26
Domainpan.rongtv.xyz
intel-blogloadermalware
High
64
Jun 8, 26
URLhttp://dash.awaydouble.org/0v2auth
intel-blogmalwarenetwork
High
58
Jun 8, 26
Domainbrokeapt.com
aptc2espionage
High
64
Jun 8, 26
Domainlegendarytrendsbay.shop
intel-blogmalwarenetwork
High
58
Jun 8, 26
SHA14f5c5b3ef45cfff7721754487a86aeff9a2e6e32
file-hashintel-blogmalware
Medium
53
Jun 8, 26
SHA25656d722b0331bf0aaa86bb37483486c6dff6ad9427fc473ed7c3226c21a9bdd23
file-hashintel-blogmalware
Medium
53
Jun 8, 26
Domainpan.ssffaa19.xyz
aptespionageintel-blog
High
64
Jun 8, 26
Domainawstrack.me
intel-blogmalwarenetwork
High
58
Jun 8, 26
SHA256c7c5072df9f83f4c440a5c3bb4be1d5f6c67bbf78f196406ca20d27b43b975b8
file-hashintel-blogmalware
Medium
53
Jun 8, 26
SHA2568610d4fb0ec5b525071c2aaec4df0f8fcbb3673aba58a7e1959fc44e83c0e2ca
file-hashintel-blogmalware
Medium
53
Jun 8, 26
SHA25625270cc429ada8028b5b33220ed412c47907ecceea7377d608fac5af01bed56a
file-hashintel-blogmalware
Medium
53
Jun 8, 26
Domaingrupoconstat.bitrix24.com.br
aptespionageintel-blog
High
58
Jun 8, 26
SHA2560a26238f6c516de5885457c93042531aa59bc206a9537cebf5267cedc6c68531
file-hashintel-blogmalware
Medium
53
Jun 8, 26
SHA256791efb555eefb7215e96659a1353a97416743b66bdd72705493129c64057d40e
file-hashintel-blogmalware
Medium
53
Jun 8, 26
SHA2565455341ed1bbe75a664fca2dd0794c508e1874f75360253a7ff5bc119bc92d80
file-hashintel-blogloader
Medium
53
Jun 8, 26
SHA25699231deb373997364381d1eb513d2d42231d418c3a2db9007c5af9bd56ab9371
file-hashintel-blogmalware
Medium
53
Jun 8, 26

IOC Relationship Graph

IOC Relationship Graph17 total IOCs
DomainURLSHA1SHA256
SHA2568Domain7URL1SHA11Malware2REPORTAI brands as bait: How thrLummaVidar
scroll to zoom · drag to pan · click IOC to open