GREYENERGY
Image Description
Common Information
Type Value
UUID 6ba41544-cad8-4cf8-9d17-29a2dd529007
Fingerprint ba411ca4dc3967152f10bc0fad1e912e5241bc4eeec41b6eb62356fa22783f72
Analysis status DONE
Considered CTI value 2
Text language
Published Oct. 18, 2018, 10:22 a.m.
Added to db March 10, 2024, 7:10 a.m.
Last updated Aug. 31, 2024, 3:29 a.m.
Headline GREYENERGY
Title GREYENERGY
Detected Hints/Tags/Attributes 170/3/146
Attributes
Details Type #Events CTI Value
Details Domain 2
agent.km
Details Domain 1
agent.kn
Details Domain 1
agent.kp
Details Domain 1
agent.kr
Details Domain 1
agent.lc
Details Domain 1
riskware.mimikatz.ae
Details Domain 2
pbank.co.ua
Details Domain 80
www.eset.com
Details File 70
e.doc
Details File 1018
rundll32.exe
Details File 2126
cmd.exe
Details File 127
c:\windows\system32\rundll32.exe
Details File 1
c:\sun\thumbs.db
Details File 143
thumbs.db
Details File 1122
svchost.exe
Details File 6
svc.dll
Details File 1
srv.dll
Details File 291
user32.dll
Details File 2
msvcrt120b.dll
Details File 3
moonraker.dll
Details File 137
conhost.exe
Details File 1
c:\windows\conhost.exe
Details File 1
c:\windows\msvcrt120b.dll
Details File 367
readme.txt
Details File 1
agent.js
Details File 75
favicon.ico
Details md5 1
27c00829d57988279f3ec61a05dee75a
Details sha1 2
177af8f6e8d6f4952d13f88cdf1887cb7220a645
Details sha1 1
455d9eb9e11aa9af9717e0260a70611ff84ef900
Details sha1 2
51309371673acd310f327a10476f707eb914e255
Details sha1 1
cb11f36e271306354998bb8abb6ca67c1d6a3e24
Details sha1 1
cc1ce3073937552459fb8ed0adb5d56fa00bcd43
Details sha1 1
30af51f1f7cb9a9a46df3abffb6ae3e39935d82c
Details sha1 1
04f75879132b0bfba96cb7b210124bc3d396a7ce
Details sha1 1
69e2487eee4637fe62e47891154d97dfdf8aad57
Details sha1 1
716efe17cd1563ffad5e5e9a3e0cac3cab725f92
Details sha1 1
93ef4f47ac160721768a00e1a2121b45a9933a1d
Details sha1 1
94f445b65bf9a0ab134fad2aaad70779eafd9288
Details sha1 1
a414f0a651f750eea18f6d6c64627c4720548581
Details sha1 1
b3ef67f7881884a2e3493fe3d5f614dbbc51a79b
Details sha1 1
ebd5dc18c51b6fb0e9985a3a9e86ff66e22e813e
Details sha1 1
ec7e018ba36f07e6dadbe411e35b0b92e3ad8aba
Details sha1 1
0b5d24e6520b8d6547526fcbfc5768ec5ad19314
Details sha1 1
10d7687c44beca4151bb07f78c6e605e8a552889
Details sha1 1
2a7ee7562a6a5ba7f192b3d6aed8627dffda4903
Details sha1 1
3cbdc146441e4858a1de47df0b4b795c4b0c2862
Details sha1 1
4e137f04a2c5fa64d5bf334ef78fe48cf7c7d626
Details sha1 1
62e00701f62971311ef8e57f33f6a3ba8ed28bf7
Details sha1 1
646060ac31ffddfbd02967216bc71556a0c1aedf
Details sha1 1
748fe84497423ed209357e923be28083d42d69de
Details sha1 1
b75d0379c5081958af83a542901553e1710979c7
Details sha1 1
bfc164e5a28a3d56b8493b1fc1ca4a12fa1ac6ac
Details sha1 1
c1eb0150e2fcc099465c210b528bf508d2c64520
Details sha1 1
cbb7ba92cdf86fa260982399dab8b416d905e89b
Details sha1 1
df051c67ee633231e4c76ec247932c1a9868c14f
Details sha1 1
dfd8665d91c508faf66e2bc2789b504670762ea2
Details sha1 1
e2436472b984f4505b4b938cee6cae26ef043fc7
Details sha1 1
e3e61df9e0dd92c98223c750e13001cbb73a1e31
Details sha1 1
e496318e6644e47b07d6cab00b93d27d0fe6b415
Details sha1 1
eda505896fff9a29bd7eae67fd626d7ffa36c7b2
Details sha1 1
f00befdf08678b642b69d128f2afae32a1564a90
Details sha1 1
f36ecac8696aa0862ad3779ca464b2cd399d8099
Details sha1 1
0bcecb797306d30d0ba5eaea123b5bf69981eff4
Details sha1 1
11159db91b870e6728f1a7835b5d8be9424914b9
Details sha1 1
6abd4b82a133c4610e5779c876fcb7e066898380
Details sha1 1
848f0dbf50b582a87399428d093e5903ffaeedcd
Details sha1 1
99a81305ef6e45f470eee677c6491045e3b4d33a
Details sha1 1
a01036a8efe5349920a656a422e959a2b9b76f02
Details sha1 1
c449294e57088e2e2b9766493e48c98b8c9180f8
Details sha1 1
c7fc689fe76361ef4fdc1f2a5bab71c0e2e09746
Details sha1 1
d24fc871a721b2fd01f143eb6375784144365a84
Details sha1 1
da617bc6dcd2083d93a9a83d4f15e3713d365960
Details sha1 1
e4fcaa1b6a27aa183c6a3a46b84b5eae9772920b
Details sha1 1
1aa1ef7470a8882ca81bb9894630433e5cce4373
Details sha1 1
10f4d12cf8ee15747bfb618f3731d81a905aab04
Details sha1 1
13c5b14e19c9095aba3f1da56b1a76793c7144b9
Details sha1 1
1ba30b645e974de86f24054b238fe77a331d0d2c
Details sha1 1
34f8323b3b6bcf4b47d0abefcf9e38e15ecd2858
Details sha1 1
438c8f9607e06e7ac1261f99f8311b004c23dec3
Details sha1 1
4d1c282f9942ec87c5b4d9363187afdc120f4dc7
Details sha1 1
4e0c5ccffb7e2d17c26f82db5564e47f141300b3
Details sha1 1
5377adb779de325a74838c0815eea958b4822f82
Details sha1 1
58a69a8d1b94e751050decf87f2572e09794f0f8
Details sha1 1
5dd34fb1c8e224c17dce04e02a4409e9393bce58
Details sha1 1
639bce78f961c4b9ecd9fe1a8537733388b99857
Details sha1 1
7127b880c8e31fbeb1d376eb55a6f878bc77b21a
Details sha1 1
71ba8fe0c9c32a9b987e2bb827fe54dae905d65e
Details sha1 1
78a7fbdd6adf073ea6d835be69084e071b4da395
Details sha1 1
81332d2f96a354b1b8e11984918c43fb9b5cb9db
Details sha1 1
8cc008b3189f8ce9a96c2c41f864d019319eb2ee
Details sha1 1
940de46cd8c50c28a9c0efc65aee7d567117941b
Details sha1 1
a415e12591dd47289e235e7022a6896cb2bfde96
Details sha1 1
d3ae97a99d826f49ad03addc9f0d5200be46ab5e
Details sha1 1
e69f5ff2fcd18698bb584b6bc15136d61eb4f594
Details sha1 1
e83a090d325e4a9e30b88a181396d62fef5d54d5
Details sha1 1
ecf21efc09e4e2acfeeb71fb78cb1f518e1f5724
Details sha1 1
b371a5d6465dc85c093a5fb84d7cddeb1effcc56
Details sha1 1
b40bde0341f52481ae1820022fa8376e53a20040
Details sha1 1
89d7e0da80c9973d945e6f62e843606b2e264f7e
Details sha1 1
8b295ab4789105f9910e4f3af1b60cbba8ad6fc0
Details sha1 1
ad6f835f239da6683caa54fccbcfdd0dc40196be
Details sha1 1
0666b109b0128599d535904c1f7ddc02c1f704f2
Details sha1 1
2695fcfe83ab536d89147184589ccb44fc4a60f3
Details sha1 1
3608ec28a9ad7af14325f764fb2f356731f1ca7a
Details sha1 1
37c837fb170164cbc88beae720df128b786a71e0
Details sha1 1
594b809343feb1d14f80f0902d764a9bf0a8c33c
Details sha1 1
7c1f7ce5e57cbde9ac7755a7b755171e38abd70d
Details sha1 1
90122c0dc5890f9a7b5774c6966ea694a590bd38
Details sha1 1
c59f66808ea8f07cbde74116dde60dab4f9f3122
Details sha1 1
ceb96b364d6a8b65ea8fa43eb0a735176e409eb0
Details sha1 1
fceaa83e7bd9bcab5efba9d1811480b8cb0b8a3e
Details IPv4 1
82.118.236.23
Details IPv4 1
88.198.13.116
Details IPv4 1
217.12.204.100
Details IPv4 1
185.128.40.90
Details IPv4 1
109.200.202.7
Details IPv4 1
193.105.134.68
Details IPv4 1
163.172.7.195
Details IPv4 1
163.172.7.196
Details IPv4 1
5.149.248.77
Details IPv4 1
31.148.220.112
Details IPv4 1
62.210.77.169
Details IPv4 1
85.25.211.10
Details IPv4 1
138.201.198.164
Details IPv4 1
124.217.254.55
Details IPv4 1
46.249.49.231
Details IPv4 1
37.59.14.94
Details IPv4 1
213.239.202.149
Details IPv4 1
217.12.202.111
Details IPv4 1
176.31.116.140
Details IPv4 1
185.217.0.121
Details IPv4 1
178.150.0.200
Details IPv4 1
176.121.10.137
Details IPv4 1
178.255.40.194
Details IPv4 1
193.105.134.56
Details IPv4 1
94.130.88.50
Details IPv4 1
185.216.33.126
Details Url 1
https://82.118.236.23:8443/27c00829d57988279f3ec61a05dee75a
Details Url 1
http://82.118.236.23:8080/27c00829d57988279f3ec61a05dee75a
Details Url 1
https://88.198.13.116:8443/xmlservice
Details Url 1
http://88.198.13.116:8080/xmlservice
Details Url 1
https://217.12.204.100/news
Details Url 1
http://217.12.204.100/news
Details Url 2
http://pbank.co.ua/favicon.ico
Details Windows Registry Key 1
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI
Details Windows Registry Key 1
HKEY_LOCAL_MACHINE\System\ControlSet002\Services\ACPI