TF-MAL-apk.phoenix
📛 Threat Title
Malware family: Phoenix
Description
ThreatFox malware family `apk.phoenix`. Printable name: Phoenix.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
apk.phoenix
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.phoenix
IOC database
- Type
- domain
- Value
apk.phoenix- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat TF-MAL-apk.phoenix
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.phoenix
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:101.school
In conclusion, remediation is a critical aspect of dealing with malware incidents. By understanding the different strategies and techniques involved, you can effectively mitigate the impact of a malware attack and prevent future infections.
-
web:cyberpress.org
MuddyWater Malware Toolkit - Iran-linked advanced persistent threat (APT) group MuddyWater has launched a sophisticated cyber-espionage.
-
web:cybersecuritynews.com
MuddyWater APT targets 100+ global government bodies via phishing emails, deploying its new Phoenix v4 backdoor malware .
-
web:dailysecurityreview.com
Iran-backed MuddyWater targets 100+ MENA government entities with Phoenix v4 malware , using phishing and credential theft for stealth espionage.
-
web:hawk-eye.io
Explore the evolving Phoenix v4 malware by APT MuddyWater, now linked to high‑profile breaches and global reconnaissance operations.
-
web:sharingknowledge.world.edu
How to get rid of Phoenix ransomware? The manual threat removal usually appears too complicated and lengthy process, and it needs advanced computer skills. The guide below can help you to remove Phoenix ransomware fast to ensure property working of the system.
-
web:www.cisa.gov
It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.
-
web:www.group-ib.com
Unmasking MuddyWater's New Malware Toolkit Driving International Espionage Group-IB Threat Intelligence has uncovered a sophisticated phishing campaign, attributed with high confidence to the Advanced Persistent Threat (APT) MuddyWater. The attack used a compromised mailbox to distribute Phoenix backdoor malware to international organizations and across the whole Middle East and North Africa ...
-
web:www.ncsc.gov.uk
How to defend organisations against malware or ransomware attacks.
-
web:www.pcrisk.com
Screenshot of files encrypted by Phoenix (".R.i.P " extension): Phoenix ransomware removal: Instant automatic malware removal: Manual threat removal might be a lengthy and complicated process that requires advanced IT skills. Combo Cleaner is a professional automatic malware removal tool that is recommended to get rid of malware .
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.