Sponsored by Hudson Rock – Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks
| Favicon | Title | Type | Available | Last Visit | Server Info | FQDN | |
|---|---|---|---|---|---|---|---|
|
|
No | 2026-05-27T11:07:01 |
6iaj3efye3q62xjgfxyegrufhewxew7yt4scxjd45tlfafyja6q4ctqd.onion
|
||||
|
|
BlackByte BLOG | No | 2026-04-28T07:23:49 |
f5uzduboq4fa2xkjloprmctk7ve3dm46ff7aniis66cbekakvksxgeqd.onion
|
|||
|
|
BlackByte BLOG | No | 2026-04-28T07:26:22 |
dlyo7r3n4qy5fzv4645nddjwarj7wjdd6wzckomcyc7akskkxp4glcad.onion
|
|||
|
|
BlackByte BLOG | No | 2026-04-28T07:28:55 |
fl3xpz5bmgzxy4fmebhgsbycgnz24uosp3u4g33oiln627qq3gyw37ad.onion
|
|||
|
|
BlackByte BLOG | No | 2026-04-28T07:31:16 |
ce6roic2ykdjunyzazsxmjpz5wsar4pflpoqzntyww5c2eskcp7dq4yd.onion
|
|||
|
|
BB Auction | No | 2026-04-28T07:32:31 |
jbeg2dct2zhku6c2vwnpxtm2psnjo2xnqvvpoiiwr5hxnc6wrp3uhnad.onion
|
|||
|
|
BB Auction | No | 2026-04-28T07:33:46 |
53d5skw4ypzku4bfq2tk2mr3xh5yqrzss25sooiubmjz67lb3gdivcad.onion
|
|||
|
|
File downloader | No | 2026-04-28T07:34:29 |
tj3ty2q5jm5au3bmd2embtjscd3qjt7nfio2o7cr6moyy5kgil5pieqd.onion
|
|||
|
|
BB Auction | No | 2026-04-28T07:36:04 |
dounczge5jhw4iztnnpzp54kd4ot3tikhjsimurtcewqssgye6vvrhqd.onion
|
| Discovery | RMM Tools | Defense Evasion | Credential Theft | OffSec | Networking | LOLBAS | Exfiltration |
|---|---|---|---|---|---|---|---|
|
PowerView
SoftPerfect NetScan
|
AnyDesk
|
Dell Client driver (BYOVD)
GIGABYTE Motherboard driver (BYOVD)
MSI Afterburner driver (BYOVD)
Zemana Anti-Rootkit driver
|
|
Cobalt Strike
PowerShell Empire
|
|
|
|
| Initial Access | Execution | Persistence | Privilege Escalation | Stealth | Credential Access | Discovery | Lateral Movement | Collection | Exfiltration | Command and Control | Impact | Resource Development | Defense Impairment |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Valid Accounts | Windows Management Instrumentation | Scheduled Task/Job: Scheduled Task | Scheduled Task/Job: Scheduled Task | Masquerading: Masquerade File Type | OS Credential Dumping | Query Registry | Remote Services: Remote Desktop Protocol | Archive Collected Data | Exfiltration Over C2 Channel | Application Layer Protocol: Web Protocols | Data Encrypted for Impact | Acquire Infrastructure: Virtual Private Server | Modify Registry |
| Valid Accounts: Domain Accounts | Scheduled Task/Job: Scheduled Task | Valid Accounts | Process Injection | Process Injection | System Network Configuration Discovery | Remote Services: SMB/Windows Admin Shares | Exfiltration Over Web Service | Ingress Tool Transfer | Inhibit System Recovery | Stage Capabilities: Upload Malware | Disable or Modify Tools | ||
| Exploit Public-Facing Application | Command and Scripting Interpreter: PowerShell | Valid Accounts: Domain Accounts | Process Injection: Process Hollowing | Process Injection: Process Hollowing | Remote System Discovery | Lateral Tool Transfer | Remote Access Tools | Defacement: Internal Defacement | Disable or Modify System Firewall | ||||
| Command and Scripting Interpreter: Windows Command Shell | Modify Registry | Exploitation for Privilege Escalation | Indicator Removal: File Deletion | Network Service Discovery | |||||||||
| System Services: Service Execution | Create Account: Domain Account | Valid Accounts | Valid Accounts | System Information Discovery | |||||||||
| Server Software Component: Web Shell | Valid Accounts: Domain Accounts | Valid Accounts: Domain Accounts | Account Discovery: Domain Account | ||||||||||
| Create or Modify System Process: Windows Service | Access Token Manipulation: Make and Impersonate Token | Access Token Manipulation: Make and Impersonate Token | Network Share Discovery | ||||||||||
| Boot or Logon Autostart Execution: Registry Run Keys / Startup Folder | Create or Modify System Process: Windows Service | Deobfuscate/Decode Files or Information | Domain Trust Discovery | ||||||||||
| Boot or Logon Autostart Execution: Registry Run Keys / Startup Folder | Execution Guardrails | Software Discovery: Security Software Discovery | |||||||||||
| System Location Discovery: System Language Discovery |
T1211