TLP:WHITE8 IOCs
SHub Reaper | macOS Stealer Spoofs Apple, Google, and Microsoft in a Single Attack Chain
Threat Actors
Malware Families
Diamond Model
Adversary(2)
Infrastructure(6)
Capability(1)
Victim
5W+H Threat Analysis
Analysis unavailable
Indicators of Compromise
Indicators of Compromise8
| Type | Indicator | Confidence | Score | First Seen |
|---|---|---|---|---|
| URL | https://hebsbsbzjsjshduxbs.xyz/api/bot/heartbeat intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
| SHA256 | 6552824c59ddacb134073f24a4bd4724514a938a9dc59f1733503642faed3bd3 file-hashintel-blogmalware | Medium | 53 | Jun 2, 26 |
| URL | https://hebsbsbzjsjshduxbs.xyz/gate intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
| MD5 | c917fcf8314228862571f80c9e4a871e file-hashintel-blogmalware | Medium | 53 | Jun 2, 26 |
| Domain | mlcrosoft.co.com intel-blogmalwarenetwork | High | 63 | Jun 2, 26 |
| Domain | qq-0732gwh22.com intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
| URL | https://hebsbsbzjsjshduxbs.xyz/api/debug/event intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
| Domain | mlroweb.com intel-blogmalwarenetwork | High | 58 | Jun 2, 26 |
IOC Relationship Graph
IOC Relationship Graph8 total IOCs
URLSHA256MD5Domain