Watermark

CTI Telemetry

VirusTotal Analysis

Dominio
sitgroup.it
Registrar
N/A
Motori AV Recap
0
Malevolo
0
Sospetto
33
Non rilevato
58
Innocuo

Acronis [harmless] clean
0xSI_f33d [undetected] unrated
Abusix [harmless] clean
ADMINUSLabs [harmless] clean
Axur [undetected] unrated
ChainPatrol [undetected] unrated
Criminal IP [harmless] clean
AILabs (MONITORAPP) [harmless] clean
AlienVault [harmless] clean
alphaMountain.ai [harmless] clean
AlphaSOC [undetected] unrated
Antiy-AVL [harmless] clean
ArcSight Threat Intelligence [undetected] unrated
AutoShun [undetected] unrated
Bfore.Ai PreCrime [undetected] unrated
BitDefender [harmless] clean
Bkav [undetected] unrated
Blueliv [harmless] clean
Certego [harmless] clean
Chong Lua Dao [harmless] clean
CINS Army [harmless] clean
Cluster25 [undetected] unrated
CRDF [harmless] clean
CSIS Security Group [undetected] unrated
Snort IP sample list [undetected] unrated
CMC Threat Intelligence [harmless] clean
CTX AI [harmless] clean
Cyan [undetected] unrated
Cyble [harmless] clean
CyRadar [harmless] clean
DNS8 [harmless] clean
Dr.Web [harmless] clean
Ermes [undetected] unrated
ESET [harmless] clean
ESTsecurity [harmless] clean
EmergingThreats [harmless] clean
Emsisoft [harmless] clean
Forcepoint ThreatSeeker [harmless] clean
Fortinet [harmless] clean
G-Data [harmless] clean
GCP Abuse Intelligence [undetected] unrated
Google Safebrowsing [harmless] clean
GreenSnow [harmless] clean
GreyNoise [undetected] unrated
Gridinsoft [undetected] unrated
Guardpot [undetected] unrated
Heimdal Security [harmless] clean
Hunt.io Intelligence [undetected] unrated
IPsum [harmless] clean
Juniper Networks [harmless] clean
Kaspersky [harmless] clean
LevelBlue [harmless] clean
Lionic [harmless] clean
Lumu [undetected] unrated
MalwarePatrol [harmless] clean
MalwareURL [undetected] unrated
Malwared [harmless] clean
Mimecast [undetected] unrated
Netcraft [undetected] unrated
OpenPhish [harmless] clean
Phishing Database [harmless] clean
PhishFort [undetected] unrated
PhishLabs [undetected] unrated
Phishtank [harmless] clean
PREBYTES [harmless] clean
PrecisionSec [undetected] unrated
Quick Heal [harmless] clean
Quttera [harmless] clean
SafeToOpen [undetected] unrated
Sansec eComscan [undetected] unrated
Scantitan [harmless] clean
Seclookup [harmless] clean
SecureBrain [undetected] unrated
SOCRadar [undetected] unrated
Sophos [harmless] clean
StopForumSpam [harmless] clean
Sucuri SiteCheck [harmless] clean
ThreatHive [harmless] clean
URLhaus [harmless] clean
URLQuery [undetected] unrated
Viettel Threat Intelligence [harmless] clean
VIPRE [undetected] unrated
VX Vault [harmless] clean
ViriBack [harmless] clean
Webroot [harmless] clean
Yandex Safebrowsing [harmless] clean
ZeroCERT [harmless] clean
desenmascara.me [harmless] clean
securolytics [harmless] clean
Xcitium Verdict Cloud [undetected] unrated
ZeroFox [undetected] unrated

0xSI_f33d undetected (unrated)
Axur undetected (unrated)
ChainPatrol undetected (unrated)
AlphaSOC undetected (unrated)
ArcSight Threat Intelligence undetected (unrated)
AutoShun undetected (unrated)
Bfore.Ai PreCrime undetected (unrated)
Bkav undetected (unrated)
Cluster25 undetected (unrated)
CSIS Security Group undetected (unrated)
Snort IP sample list undetected (unrated)
Cyan undetected (unrated)
Ermes undetected (unrated)
GCP Abuse Intelligence undetected (unrated)
GreyNoise undetected (unrated)
Gridinsoft undetected (unrated)
Guardpot undetected (unrated)
Hunt.io Intelligence undetected (unrated)
Lumu undetected (unrated)
MalwareURL undetected (unrated)
Mimecast undetected (unrated)
Netcraft undetected (unrated)
PhishFort undetected (unrated)
PhishLabs undetected (unrated)
PrecisionSec undetected (unrated)
SafeToOpen undetected (unrated)
Sansec eComscan undetected (unrated)
SecureBrain undetected (unrated)
SOCRadar undetected (unrated)
URLQuery undetected (unrated)
VIPRE undetected (unrated)
Xcitium Verdict Cloud undetected (unrated)
ZeroFox undetected (unrated)

MX mxb-009bb801.gslb.pphosted.com
MX mxa-009bb801.gslb.pphosted.com
TXT MS=ms91457890
TXT v=spf1 mx include:spf.protection.outlook.com include:mail.zendesk.com include:_spf.salesforce.com a:mtcmail.metisoft.it a:mailgw.sitgroup.it include:spf-009bb801.pphosted.com ip4:54.78.37.25 ip4:212.4.22.138 ip4:212.4.22.134 -all
TXT cisco-ci-domain-verification=37c3fd3c3043f012de8ec67f197efaca882ffacae26eb34c609e54d2f02ae40b
TXT apple-domain-verification=6EJ5cWp2S8WldOtP
TXT knowbe4-site-verification=e9df7fd22dd6daf5451df05143a849dc
NS ns2.register.it
TXT MS=6A0D00FCE2B31F8037BA480EEBA5A57A0893A844
NS ns1.register.it
SOA ns1.register.it

Nessun certificato HTTPS disponibile.

Infostealer analysis by HudsonRock

7
🧠 Dispositivi infetti
4
🌐 Utenti compromessi
0
πŸ§‘β€πŸ’Ό Dipendenti compromessi
0
πŸ”‘ Password aziendali
5
πŸ”‘ Password users

Lumma 3

Nessun dato disponibile.

https://captiveportal-login.sitgroup.it 2
https://kt.sitgroup.it/login.php 1
https://captiveportal-login.sitgroup.it/cgi-bin/login 1
https://mail01.sitgroup.it 1

Not Found 2