s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-apk.bingomod

📛 Threat Title

Malware family: BingoMod

Category: BingoMod First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `apk.bingomod`. Printable name: BingoMod.

Indicators of Compromise (1)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

domain apk.bingomod VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.bingomod

IOC database

Type
domain
Value
apk.bingomod
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Extracted from Threat TF-MAL-apk.bingomod

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.bingomod

References (1)

Remediations (10)

  • web:bazaar.abuse.ch

    A malware sample can be associated with only one malware family . The page below gives you an overview on malware samples that MalwareBazaar has identified as BingoMod .

  • web:blogs.npav.net

    Cybersecurity researchers at Cleafy have uncovered a new Android remote access trojan (RAT) called BingoMod , which performs fraudulent money transfers and wipes devices to erase traces of the malware . What is BingoMod ? BingoMod is a modern RAT generation mobile malware that allows threat actors to conduct Account Takeover (ATO) directly from the infected device, exploiting the on-device fraud ...

  • web:impulsec.com

    Overview In May 2024, researchers from Cleafy TIR released information about a new Android Remote Access Trojan (RAT), named BingoMod . This malware is unique, as it does not appear to be linked to any previously recognized malware families. Key objectives of BingoMod include facilitating money transfers directly from affected devices through Account Takeover (ATO). It skillfully employs On ...

  • web:infosecbulletin.com

    Cleafy found a harmful software called BingoMod that targets Android devices. The malware tries to get into bank accounts on the device and steal money, then it erases the device's activity. Cleafy says that BingoMod is a type of remote access Trojan (RAT). Attackers can use it to control devices remotely and steal bank account information. They do this by tricking users into enabling ...

  • web:thehackernews.com

    Cybersecurity researchers have uncovered a new Android remote access trojan (RAT) called BingoMod that not only performs fraudulent money transfers from the compromised devices but also wipes them in an attempt to erase traces of the malware . Italian cybersecurity firm Cleafy, which discovered the ...

  • web:www.androidauthority.com

    Learn why the recently discovered BingoMod malware for Android phones has the potential to be devastating to more than your bank account.

  • web:www.bankinfosecurity.com

    The malware's code contains comments that suggest the developers could be Romanian speakers. BingoMod is part of the modern generation of RATs for mobile devices that allow threat actors to ...

  • web:www.cleafy.com

    At the end of May 2024, a new Android RAT appeared in Cleafy's telemetries. Due to the lack of information and the absence of a proper nomenclature for this malware family , we decided to dub it BingoMod to track it inside our Threat Intelligence taxonomy. This nomenclature is based on the malware's core component, known at an early stage as "ChrUpdate" but later renamed " BingoMod ...

  • web:www.gadgetreview.com

    A dangerous new Android malware called BingoMod has been discovered by Italian cybersecurity firm Cleafy. This remote access trojan (RAT) can steal your money through fraudulent transfers and then ...

  • web:www.pcrisk.com

    Notably, BingoMod includes around 40 remote control functions, such as real-time screen monitoring using a VNC-like routine with Android's Media Projection API for capturing screenshots, and screen interaction via Accessibility Service. Additionally, the malware can perform Overlay Attacks and display fake notifications.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.