Nexus Analysis

IOB - Indicator of Behavior (598)

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Lang

en496
ru34
es16
de16
fr10

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Country

us494
de104

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Actors

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Activities

Interest

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Type

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vendor

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Product

Esoftpro Online Guestbook Pro8
Apache HTTP Server4
Dairy Farm Shop Management System4
IsolSoft Support Center4
Zentrack4

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vulnerabilities

#VulnerabilityBaseTemp0dayTodayExpRemEPSSCTICVE
1Lars Ellingsen Guestserver guestbook.cgi cross site scripting4.34.3$0-$5k$0-$5kNot DefinedNot Defined0.001690.17CVE-2005-4222
2Matt Wright Matt Wright Guestbook guestbook.pl cross site scripting4.34.1$0-$5k$0-$5kProof-of-ConceptUnavailable0.009910.05CVE-2006-1697
3PHP phpinfo cross site scripting4.33.9$5k-$25k$0-$5kProof-of-ConceptOfficial Fix0.019600.03CVE-2007-1287
4PHP Link Directory Administration Page index.html cross site scripting4.34.3$0-$5k$0-$5kNot DefinedNot Defined0.003740.41CVE-2007-0529
5SPIP spip.php cross site scripting3.53.4$0-$5k$0-$5kNot DefinedOfficial Fix0.001320.53CVE-2022-28959
6Joomla CMS com_easyblog sql injection6.36.1$5k-$25k$5k-$25kNot DefinedNot Defined0.000000.33
7Void Contact Form 7 Widget for Elementor Page Builder Plugin void_cf7_opt_in_user_data_track cross-site request forgery4.34.2$0-$5k$0-$5kNot DefinedNot Defined0.000630.00CVE-2022-47166
8DZCP deV!L`z Clanportal config.php code injection7.36.6$0-$5k$0-$5kProof-of-ConceptOfficial Fix0.009430.77CVE-2010-0966
9SourceCodester Online Flight Booking Management System POST Parameter review_search.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.001340.07CVE-2023-0283
10Responsive Menus Configuration Setting responsive_menus.module responsive_menus_admin_form_submit cross site scripting3.23.2$0-$5k$0-$5kNot DefinedOfficial Fix0.000730.03CVE-2018-25085
11TikiWiki tiki-register.php input validation7.36.6$0-$5k$0-$5kProof-of-ConceptOfficial Fix0.010756.77CVE-2006-6168
12Intelliants eSyndiCat suggest-category.php cross site scripting4.34.3$0-$5k$0-$5kNot DefinedNot Defined0.002570.04CVE-2010-4504
13MGB OpenSource Guestbook email.php sql injection7.37.3$0-$5k$0-$5kHighUnavailable0.013020.69CVE-2007-0354
14Phorum register.php sql injection7.37.0$0-$5k$0-$5kNot DefinedOfficial Fix0.001840.04CVE-2004-2110
15WordPress AdServe adclick.php sql injection7.36.6$0-$5k$0-$5kProof-of-ConceptOfficial Fix0.000730.04CVE-2008-0507
16Esoftpro Online Guestbook Pro ogp_show.php cross site scripting4.34.3$0-$5k$0-$5kNot DefinedNot Defined0.001340.05CVE-2009-2447
17OpenX adclick.php redirect5.34.7$0-$5k$0-$5kUnprovenUnavailable0.004400.17CVE-2014-2230
18MilliScripts register.php cross site scripting4.34.1$0-$5k$0-$5kProof-of-ConceptNot Defined0.005180.04CVE-2005-4161
19DZCP deV!L`z Clanportal browser.php information disclosure5.35.0$0-$5k$0-$5kProof-of-ConceptNot Defined0.027330.64CVE-2007-1167
20E-topbiz Viral DX 1 adclick.php sql injection7.37.3$0-$5k$0-$5kHighUnavailable0.000870.05CVE-2008-2867

IOC - Indicator of Compromise (13)

These indicators of compromise highlight associated network ressources which are known to be part of research and attack activities.

IDIP addressHostnameActorCampaignsIdentifiedTypeConfidence
15.161.23.233static.233.23.161.5.clients.your-server.deNexus04/27/2023verifiedHigh
25.161.97.57static.57.97.161.5.clients.your-server.deNexus04/02/2024verifiedHigh
35.161.201.122static.122.201.161.5.clients.your-server.deNexus03/07/2023verifiedHigh
4XX.XX.XX.XXXXxxxx04/27/2023verifiedHigh
5XX.XX.XX.XXXXxxxx03/07/2023verifiedHigh
6XX.XXX.XXX.XXXxxxx04/27/2023verifiedHigh
7XX.XXX.XX.XXXXxxxx04/27/2023verifiedHigh
8XX.XXX.XX.XXXXxxxx04/27/2023verifiedHigh
9XX.XXX.XX.XXXXxxxx04/27/2023verifiedHigh
10XXX.XX.XX.XXXxxxx03/30/2023verifiedHigh
11XXX.XX.XX.XXXxxxx03/30/2023verifiedHigh
12XXX.XX.XXX.XXXxxxx04/27/2023verifiedHigh
13XXX.XX.XXX.XXXxxxx04/27/2023verifiedHigh

TTP - Tactics, Techniques, Procedures (19)

Tactics, techniques, and procedures summarize the suspected MITRE ATT&CK techniques used. This data is unique as it uses our predictive model for actor profiling.

IOA - Indicator of Attack (226)

These indicators of attack list the potential fragments used for technical activities like reconnaissance, exploitation, privilege escalation, and exfiltration. This data is unique as it uses our predictive model for actor profiling.

IDClassIndicatorTypeConfidence
1File/acms/admin/cargo_types/manage_cargo_type.phppredictiveHigh
2File/admin/?page=user/manage_user&id=3predictiveHigh
3File/admin/ajax/avatar.phppredictiveHigh
4File/admin/employee_edit.phppredictiveHigh
5File/admin/fields/manage_field.phppredictiveHigh
6File/admin/optionspredictiveHigh
7File/admin/pages/yearlevel.phppredictiveHigh
8File/admin/show.phppredictiveHigh
9File/be/erpc.phppredictiveMedium
10File/bin/shpredictiveLow
11File/cgi-bin/system_mgr.cgipredictiveHigh
12File/cgi-bin/vitogate.cgipredictiveHigh
13File/ebics-server/ebics.aspxpredictiveHigh
14File/forum/away.phppredictiveHigh
15File/front/admin/tenancyDetail.phppredictiveHigh
16File/horde/util/go.phppredictiveHigh
17File/importexport.phppredictiveHigh
18File/mgmt/tm/util/bashpredictiveHigh
19File/my_photo_gallery/image.phppredictiveHigh
20File/oews/classes/Master.php?f=update_cartpredictiveHigh
21File/patient/doctors.phppredictiveHigh
22File/php-fusion/infusions/shoutbox_panel/shoutbox_archive.phppredictiveHigh
23File/phpinventory/editcategory.phppredictiveHigh
24File/phpinventory/edituser.phppredictiveHigh
25File/schedules/view_schedule.phppredictiveHigh
26File/Service/ImageStationDataService.asmxpredictiveHigh
27File/spip.phppredictiveMedium
28File/uncpath/predictiveMedium
29File/useratte/inc/userattea.phppredictiveHigh
30File/var/log/cronpredictiveHigh
31File/xx/xxxxx/xxxxxxx.xxxpredictiveHigh
32File/xx-xxxxx/xxxxx-xxxx.xxxpredictiveHigh
33Filexxx/xxx.xxxpredictiveMedium
34Filexxxxxxx.xxxpredictiveMedium
35Filexxxxxx/xxxxxxx/xxx/xxx-xxxxx.xxpredictiveHigh
36Filexxxxx.xxxpredictiveMedium
37Filexxxxx.xxxxpredictiveMedium
38Filexxxxx/xxxxxxxxxxxxx.xxxpredictiveHigh
39Filexxxxx/xxx.xxxpredictiveHigh
40Filexxxxx/xxxxx-xxxxxxx-xx-xxxxxxxxxxxxxxxxxxxx-xxxxx.xxxpredictiveHigh
41Filexxxxx/xxxxx.xxx?xx=xxxxxx&xxxxxx=xxxx_xxxxxpredictiveHigh
42Filexxxxx_xxxxx.xxxpredictiveHigh
43Filexxx.xxxpredictiveLow
44Filexxxxxxxxxxxxx.xxxpredictiveHigh
45Filexxxxxxx.xxpredictiveMedium
46Filexxxxxxx.xxpredictiveMedium
47Filexxxx_xxxxxxxxxxx.xxxpredictiveHigh
48Filexxxxxx.xxxpredictiveMedium
49Filexxxx.xxxpredictiveMedium
50Filexxxxxx_xxxxxx.xxxpredictiveHigh
51Filexxxxxx-xxxxxx-xx.xxxpredictiveHigh
52Filex:\xxxxxxx xxxxx\xxxxxx xxxxx\xxx\xxxxxxx.xxxpredictiveHigh
53Filexxxxxxxx.xxxpredictiveMedium
54Filexxx-xxx/xxxxxxx.xxpredictiveHigh
55Filexxxxx.xxxpredictiveMedium
56Filexxxxx-xxxxxxx.xxxpredictiveHigh
57Filexxxxxxxx-xxx.xxxpredictiveHigh
58Filexxxxxx-xxxxx.xxxpredictiveHigh
59Filexxxxxxxxx.xxxpredictiveHigh
60Filexxxx.xxxpredictiveMedium
61Filexxxxx/xxxx/xxxxxxxxpredictiveHigh
62Filexxxxxxxxx.xxxpredictiveHigh
63Filexxxxxxxx.xxx.xxxpredictiveHigh
64Filexxxxx.xxxpredictiveMedium
65Filexxxxxxxx/xxx-xxxx.xxxpredictiveHigh
66Filexxxxxxxxxxxxxxxx/xxxxxxxxxxxxxx.xxpredictiveHigh
67Filexxxx.xxxpredictiveMedium
68Filexxx/xxxx/xxx/xxxxx_xxxx.xpredictiveHigh
69Filexxx/xxxx/xxxx.xpredictiveHigh
70Filexxxxxxxx.xxxpredictiveMedium
71Filexxxxxxxxxxxx_xxxx.xxxpredictiveHigh
72Filexxxxxx/xxxxxxxxx?xx=xxx_xxx.xxxpredictiveHigh
73Filexxxxxxxxx.xxxpredictiveHigh
74Filexxxxxxxxx.xxpredictiveMedium
75Filexxxx.xxxpredictiveMedium
76Filexxxxxxxxxxxxxx.xxxpredictiveHigh
77Filexxx/xxxxxx.xxxpredictiveHigh
78Filexxx/xxxxxxxxxxx/xxxxxxx.xxxpredictiveHigh
79Filexxxxxxx.xxxpredictiveMedium
80Filexxxxxxx/xxxxxxx/xxxxxx.xxx.xxxpredictiveHigh
81Filexxxxxxx_xxxxx.xxxpredictiveHigh
82Filexxxxx.xxxxpredictiveMedium
83Filexxxxx.xxxpredictiveMedium
84Filexxxxxxxxxxxxx.xxxpredictiveHigh
85Filexxx.xxxpredictiveLow
86Filexxxxxxxx.xxx.xxxpredictiveHigh
87Filexxxxxxx.xxxpredictiveMedium
88Filexxxx.xxxxpredictiveMedium
89Filexxxxxxxxxxx.xxxpredictiveHigh
90Filexxxxxxx/xxx_xxxxxxxx.xxxpredictiveHigh
91Filexxx_xxxxxxxx.xxxpredictiveHigh
92Filexxxxxxxx.xxxxxxxxxxxxxxxxxxx.xxxxxxxxxxxxxxxxxxpredictiveHigh
93Filexxxxxxxxx.xpredictiveMedium
94Filexxxxxxxxx.xxxpredictiveHigh
95Filexxx_xxxx.xxxpredictiveMedium
96Filexxxxxx_xxxxxx.xxxpredictiveHigh
97Filexxxx.xxxpredictiveMedium
98Filexxxxxxxxxxxxxxx.xxxpredictiveHigh
99Filexxxxxxxxx.xxx.xxxpredictiveHigh
100Filexxxxxxx_xxxxxx_xxx.xxxxpredictiveHigh
101Filexxxxxxx/xxxxxxx/xx_xxxxxxxxx/xxxxxxxx/xxxxxxxx.xxxpredictiveHigh
102Filexxxxx_xxxxxx.xxxpredictiveHigh
103Filexxxxx.xxxpredictiveMedium
104Filexxxxx.xxxpredictiveMedium
105Filexxxx.xxxpredictiveMedium
106Filexxxxx.xxxpredictiveMedium
107Filexxxxx_xxxx_xxxx_xxxx.xxxpredictiveHigh
108Filexxxxxxxx.xxxpredictiveMedium
109Filexxxxxxxx_xxxxxx.xxxpredictiveHigh
110Filexxxxxxxxxx_xxxxx.xxxxxxpredictiveHigh
111Filexxxxxx_xxxxxx.xxxpredictiveHigh
112Filexxxxx-xxxxxx-xx.xxxpredictiveHigh
113Filexxxxxx_xxx_xxxxxx.xxxpredictiveHigh
114Filexxxx.xxxpredictiveMedium
115Filexxxxxxxx.xxxpredictiveMedium
116Filexxxxxxxx.xxx/xxxxxx.xxx/xxxxxxxx.xxxpredictiveHigh
117Filexxxxxxx/xxxxxx.xxxpredictiveHigh
118Filexxxxx.xxxpredictiveMedium
119Filexxxxxxxxx.xxxpredictiveHigh
120Filexxxxxxx-xxxxxxxx.xxxpredictiveHigh
121Filexxxxxxx-xxxxxxx.xxxpredictiveHigh
122Filexxxxxxxxxxxxxxxxxxxxx.xxxpredictiveHigh
123Filexxxxxxxxx/xxxxx/xxxx/xxx_xxxxxxx/xxxxxxx/xxxxxxx.xxxpredictiveHigh
124Filexxxx-xxxxx.xxxpredictiveHigh
125Filexxxx-xxxxxxxx.xxxpredictiveHigh
126Filexxxx/xxx/xxxx-xxxxx.xxxpredictiveHigh
127Filexxxx.xpredictiveLow
128Filexxxxxx.xxxpredictiveMedium
129Filexxxxxxxxx.xxxpredictiveHigh
130Filexx-xxxxxxxx/xxxxx-xx-xxxxxx-xxxxxx.xxxpredictiveHigh
131Filexxx/xxxxxxxx/xxxxxxxx.xxxpredictiveHigh
132File~/xxxxxxx/xxxxxxx/xxxxxxxxxxxx.xxxpredictiveHigh
133File~/xxxxxxxx/xxxxxxx/xxxxx-xxxx-xxxxxxx.xxxpredictiveHigh
134Libraryxxxxxx.xxxpredictiveMedium
135Libraryxxxxxxxxxxxxxxxx.xxxpredictiveHigh
136Libraryxxx/xxxx/xxxxxxx/xxxxxxxx_xxxxxxx/xxxxxxxx.xxpredictiveHigh
137Libraryxxxxxxxxx/xxx-xxxxxx/xxxxxxxx.xxxpredictiveHigh
138Libraryxxxxxxxxx.x.x.xxx.xxxpredictiveHigh
139Libraryxxxxxxxxx.xxxpredictiveHigh
140Libraryxxxxxxxxxxx.xxxpredictiveHigh
141Libraryxxxxxxxx.xxxpredictiveMedium
142Libraryxxxxxxxxxxxx.xxxpredictiveHigh
143Libraryxxxxxxxx.xxxpredictiveMedium
144Argumentxx_xxxx_xxxxpredictiveMedium
145Argumentxxx/xxxpredictiveLow
146ArgumentxxxxxpredictiveLow
147Argumentxxxxxxx_xxpredictiveMedium
148ArgumentxxxxxxxxxpredictiveMedium
149ArgumentxxxxxxxxpredictiveMedium
150ArgumentxxxxxxxxpredictiveMedium
151Argumentxxxx_xxxpredictiveMedium
152Argumentxxxxx_xxxpredictiveMedium
153Argumentxxxx_xxxxpredictiveMedium
154Argumentxxx_xxxpredictiveLow
155Argumentxxxx_xxpredictiveLow
156ArgumentxxxpredictiveLow
157ArgumentxxxxxxxxpredictiveMedium
158ArgumentxxxxxxxxxxpredictiveMedium
159ArgumentxxxpredictiveLow
160ArgumentxxxxxxpredictiveLow
161ArgumentxxxxxxxxxxpredictiveMedium
162Argumentxxxxxx[xxxx]predictiveMedium
163ArgumentxxxxxxxxpredictiveMedium
164ArgumentxxxxxxxxxxxpredictiveMedium
165ArgumentxxxxpredictiveLow
166ArgumentxxxxxxxpredictiveLow
167ArgumentxxxxxxxxxxpredictiveMedium
168ArgumentxxxxxpredictiveLow
169ArgumentxxxxxpredictiveLow
170Argumentxx_xxxxx_xxpredictiveMedium
171ArgumentxxxxpredictiveLow
172ArgumentxxxxxpredictiveLow
173ArgumentxxxxxxpredictiveLow
174ArgumentxxxxxxxxpredictiveMedium
175Argumentxxxx/xxxxpredictiveMedium
176Argumentxxxx_xxxxxpredictiveMedium
177Argumentxxxx_xxxxxxxpredictiveMedium
178ArgumentxxpredictiveLow
179ArgumentxxpredictiveLow
180ArgumentxxxpredictiveLow
181ArgumentxxxxxpredictiveLow
182Argumentxxx_xxxpredictiveLow
183Argumentxxxxx.xxx?xxxxxx=xxx_xxxxxxx/xxxx=xxxxxxx/xx=x/xxxxxxxx=xxxxxpredictiveHigh
184Argumentxxxxxxx_xxxxpredictiveMedium
185ArgumentxxxxpredictiveLow
186Argumentxxxxx_xxxpredictiveMedium
187ArgumentxxxxpredictiveLow
188Argumentxxxxxxxxxxxxx/xxxxxxxxxxxxxpredictiveHigh
189Argumentxxx_xxpredictiveLow
190Argumentxxxxxxxxx_xxxxxxxx_xxxxpredictiveHigh
191ArgumentxxxpredictiveLow
192Argumentxxxxxxx_xxpredictiveMedium
193Argumentxxxxxxxxx/xxxxxxxxxxxpredictiveHigh
194ArgumentxxxxxxpredictiveLow
195Argumentxxxxxx_xxxxxx[xxxxxx_xxxx]predictiveHigh
196ArgumentxxpredictiveLow
197ArgumentxxxxxxpredictiveLow
198ArgumentxxxxxxxxxpredictiveMedium
199Argumentxxxxxxx_xxxpredictiveMedium
200Argumentxxxxxxxx_xxxxxpredictiveHigh
201ArgumentxxxxpredictiveLow
202ArgumentxxxxxxxpredictiveLow
203ArgumentxxxxxxpredictiveLow
204ArgumentxxxxxxxxpredictiveMedium
205ArgumentxxxxxxpredictiveLow
206Argumentxxxxxx_xxxxxxpredictiveHigh
207ArgumentxxxxxxpredictiveLow
208ArgumentxxxxpredictiveLow
209ArgumentxxxpredictiveLow
210ArgumentxxxxxxxxxxpredictiveMedium
211ArgumentxxxxxxpredictiveLow
212ArgumentxxxpredictiveLow
213ArgumentxxxxxpredictiveLow
214ArgumentxxxxxxxxxpredictiveMedium
215ArgumentxxxpredictiveLow
216ArgumentxxxxxpredictiveLow
217Argumentxxxx xxxxx/xxxxxxxpredictiveHigh
218Argument_xxxxx_xxxxxxx_xxxxxxxxx_xxxxxxx-xxxpredictiveHigh
219Input Value"><xxxxxx>xxxxxx(x)</xxxxxx>predictiveHigh
220Input Value%xxpredictiveLow
221Input Value-xx%xxxxxxx%xxxxx%xxxxxxxx%xxx,@@xxxxxxx,x,x,x,x,x,x--predictiveHigh
222Input Valuex xxxxx xxx xxxxxx xxxx,xxxx,xxxx,xxxx,xxxxxx(xxxxxxxxxxxx,xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx,xxxxxxxxxxxx)--predictiveHigh
223Input Valuexxxxx"><xxxxxx>xxxxx('xxx')</xxxxxx>predictiveHigh
224Input Value\xxx../../../../xxx/xxxxxxpredictiveHigh
225Network Portxxx/xxxpredictiveLow
226Network Portxxx/xxxxpredictiveMedium

References (4)

The following list contains external sources which discuss the actor and the associated activities:

Want to stay up to date on a daily basis?

Enable the mail alert feature now!