Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

add download-binance.online to wildcard domain list #464

Conversation

g0d33p3rsec
Copy link
Contributor

Phishing Domain/URL/IP(s):

download-binance.online
https://download-binance.online/
https://download-binance.online/binance-setup.exe
https://download-binance.online/BinanceSetup.zip

Impersonated domain

https://www.binance.com/

Describe the issue

This domain is hosting a Binance lure and distributing binaries containing Poverty Stealer.

Related external source

https://urlscan.io/search/#page.domain%3Adownload-binance.online
https://urlscan.io/result/bbf80d5c-bfe9-42bb-b658-53b6418cd79f/
https://www.virustotal.com/gui/file/9b85fb69d2828fe57a9994afa64905970a9941e809a3a3c6be8a87159f72f1c8/
https://tria.ge/240729-t5h1fsxhkq/behavioral1
https://www.shodan.io/host/147.45.47.178
https://search.censys.io/hosts/147.45.47.178?resource=hosts&sort=RELEVANCE&per_page=25&virtual_hosts=EXCLUDE&q=download-binance.online&at_time=2024-07-29T11%3A00%3A26.701Z

Screenshot

Click to expand

bbf80d5c-bfe9-42bb-b658-53b6418cd79f

@spirillen spirillen merged commit ff44d2b into Phishing-Database:main Jul 29, 2024
1 check passed
@g0d33p3rsec g0d33p3rsec deleted the add-download-binance.online-to-wildcard-list branch October 9, 2024 16:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants