TF-MAL-apk.xploitspy
📛 Threat Title
Malware family: XploitSPY
Description
ThreatFox malware family `apk.xploitspy`. Printable name: XploitSPY.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
apk.xploitspy
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.xploitspy
IOC database
- Type
- domain
- Value
apk.xploitspy- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat TF-MAL-apk.xploitspy
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.xploitspy
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:cybersecuritynews.com
The discovery of the exotic Visit campaign and the XploitSPY malware it propagates is a stark reminder of the evolving landscape of cyber threats. Users in India and globally must remain vigilant and adopt robust security practices to protect their digital lives.
-
web:github.com
XploitSPY is an Android Monitoring Tool . Contribute to XploitWizer-Community/ XploitSPY development by creating an account on GitHub.
-
web:malpedia.caad.fkie.fraunhofer.de
Details for the XploitSPY malware family including references, samples and yara signatures.
-
web:thehackernews.com
REF7707 deployed FINALDRAFT malware , using Microsoft Graph API for stealthy command-and-control in a global espionage campaign.
-
web:www.cisa.gov
It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.
-
web:www.eset.com
ESET researchers have discovered an active espionage campaign targeting Android users with apps primarily posing as messaging services. While these apps offer functional services as bait, they are bundled with the open-source XploitSPY malware .
-
web:www.forbes.com
XsploitSPY malware promises a full menu of nasty capabilities, including GPS logging, microphone recording, camera access, SMS access, clipboard logging and message notification interception.
-
web:www.linkedin.com
124% surge in IoT malware attacks in 2026. That's not a gradual increase. It's an explosion. IoT malware attacks more than doubled year-over-year, with attackers recruiting millions of vulnerable ...
-
web:www.pcrisk.com
Malware attacks can be motivated by amusement, personal grudges, and political/geopolitical reasons. How did XploitSPY malware infiltrate my Android device? XploitSPY is distributed bundled with legitimate (or genuine-sounding) applications, especially messengers.
-
web:www.welivesecurity.com
The malicious apps - which were distributed through dedicated websites and even Google Play - masqueraded as messaging services, but came bundled with the XploitSPY malware .
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.