Author Topic: Threat: URL:Phishing Continuous Abortion of Connection appearing every 10mins  (Read 560 times)

0 Members and 1 Guest are viewing this topic.

Offline Mr.O

  • Newbie
  • *
  • Posts: 3
Alert Message:

Threat secured
We've safely aborted connection on 91.108.56.148 because it was infected with URL:Phishing

Threat name: URL:Phishing
Threat type: Phishing - This is a scam designed to steal sensitive information like your credit card number, banking credentials, or passwords.
URL: http://91.108.56.148:80/api

Number of Occurrences: 19 (every 10mins)

Note: This type of alert is coming from Telegram.exe

Actions taken:
1. Completely uninstalled Telegram Desktop App
2. Reinstalled Telegram Desktop App

Results:
-Alerts still persisted to appear from the same URL

Any idea on what might be causing this alert? Thank you all in advanced.

Offline Mr.O

  • Newbie
  • *
  • Posts: 3
Update:

Detection ID: ec7ce1a4d69c/2024-01-07T11:28:28.903Z


Offline Mr.O

  • Newbie
  • *
  • Posts: 3
Hi. I already sent a report on the URL. Hopefully someone can tell me what is going on.