IoC Extractor

This IoC extractor identifies Indicators of Compromise (IoCs) by matching patterns, without analyzing the context of the surrounding text. Manual Review and Validation of the extracted IoCs are essential before any action is used.

EvilProxy Phishing-as-a-Service with MFA Bypass Emerged in Dark Web

DATE : 2022-08-26T07:00:00
SOURCE : resecurity.com

Domain:
lmo.msdnmail.net
2fwwwofc.msdnmail.net
473126b6-bf9a-4a96-8111-fb04f6631ad8-571c4b21.msdnmail.net
brave.com
msdnmail.net
evilproxy.pro
top-cyber.club
rproxy.io
login-live.rproxy.io
cpanel.evilproxy.pro

Url:
https://lmo.msdnmail.net/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&am
https://473126b6-bf9a-4a96-8111-fb04f6631ad8-571c4b21.msdnmail.net/mail/?realm=