Insights into Iranian Cyber Espionage: APT33 Targets Aerospace and Energy Sectors and has Ties to Destructive Malware
Common Information
Type | Value |
---|---|
UUID | 93dc7296-3492-4b78-8a30-767628233a54 |
Fingerprint | 33778c07713e771283688070cdf646f6f4950e4c3b13605d71f3a808dca59ec1 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 29, 2017, 11:14 a.m. |
Added to db | July 4, 2024, 3:31 p.m. |
Last updated | Aug. 31, 2024, 8:57 a.m. |
Headline | Insights into Iranian Cyber Espionage: APT33 Targets Aerospace and Energy Sectors and has Ties to Destructive Malware |
Title | Insights into Iranian Cyber Espionage: APT33 Targets Aerospace and Energy Sectors and has Ties to Destructive Malware |
Detected Hints/Tags/Attributes | 90/4/59 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1176 | gmail.com |
|
Details | Domain | 2 | boeing.servehttp.com |
|
Details | Domain | 2 | alsalam.ddns.net |
|
Details | Domain | 2 | ngaaksa.ddns.net |
|
Details | Domain | 2 | ngaaksa.sytes.net |
|
Details | Domain | 2 | vinnellarabia.myftp.org |
|
Details | Domain | 2 | managehelpdesk.com |
|
Details | Domain | 5 | microsoftupdated.com |
|
Details | Domain | 2 | osupd.com |
|
Details | Domain | 5 | mywinnetwork.ddns.net |
|
Details | Domain | 3 | www.chromup.com |
|
Details | Domain | 3 | www.securityupdated.com |
|
Details | Domain | 2 | googlmail.net |
|
Details | Domain | 2 | microsoftupdated.net |
|
Details | Domain | 2 | syn.broadcaster.rocks |
|
Details | Domain | 2 | www.googlmail.net |
|
Details | 3 | solevisible@gmail.com |
||
Details | File | 4 | apt33-insights-into-iranian-cyber-espionage.html |
|
Details | md5 | 2 | 3f5329cf2a829f8840ba6a903f17a1bf |
|
Details | md5 | 2 | 10f58774cd52f71cd4438547c39b1aa7 |
|
Details | md5 | 2 | 663c18cfcedd90a3c91a09478f1e91bc |
|
Details | md5 | 2 | 6f1d5c57b3b415edc3767b079999dd50 |
|
Details | md5 | 3 | 0ccc9ec82f1d44c243329014b82d3125 |
|
Details | md5 | 2 | fb21f3cea1aa051ba2a45e75d46b98b8 |
|
Details | md5 | 2 | 3e8a4d654d5baa99f8913d8e2bd8a184 |
|
Details | md5 | 2 | 6b41980aa6966dda6c3f68aeeb9ae2e0 |
|
Details | md5 | 2 | 8e67f4c98754a2373a49eaf53425d79a |
|
Details | md5 | 2 | c57c5529d91cffef3ec8dadf61c5ffb2 |
|
Details | md5 | 2 | c02689449a4ce73ec79a52595ab590f6 |
|
Details | md5 | 2 | 59d0d27360c9534d55596891049eb3ef |
|
Details | md5 | 2 | 797bc06d3e0f5891591b68885d99b4e1 |
|
Details | md5 | 2 | 8e6d5ef3f6912a7c49f8eb6a71e18ee2 |
|
Details | md5 | 2 | 32a9a9aa9a81be6186937b99e04ad4be |
|
Details | md5 | 2 | a272326cb5f0b73eb9a42c9e629a0fd8 |
|
Details | md5 | 2 | a813dd6b81db331f10efaf1173f1da5d |
|
Details | md5 | 2 | de9e3b4124292b4fba0c5284155fa317 |
|
Details | md5 | 2 | b3d73364995815d78f6d66101e718837 |
|
Details | md5 | 2 | de7a44518d67b13cda535474ffedf36b |
|
Details | md5 | 2 | b5f69841bf4e0e96a99aa811b52d0e90 |
|
Details | md5 | 2 | a2af2e6bbb6551ddf09f0a7204b5952e |
|
Details | md5 | 2 | b189b21aafd206625e6c4e4a42c8ba76 |
|
Details | md5 | 2 | aa63b16b6bf326dd3b4e82ffad4c1338 |
|
Details | md5 | 2 | c55b002ae9db4dbb2992f7ef0fbc86cb |
|
Details | md5 | 2 | c2d472bdb8b98ed83cc8ded68a79c425 |
|
Details | md5 | 2 | c6f2f502ad268248d6c0087a2538cad0 |
|
Details | md5 | 2 | c66422d3a9ebe5f323d29a7be76bc57a |
|
Details | md5 | 2 | ae47d53fe8ced620e9969cea58e87d9a |
|
Details | md5 | 2 | b12faab84e2140dfa5852411c91a3474 |
|
Details | md5 | 2 | c2fbb3ac76b0839e0a744ad8bdddba0e |
|
Details | md5 | 2 | a80c7ce33769ada7b4d56733d02afbe5 |
|
Details | md5 | 2 | 6a0f07e322d3b7bc88e2468f9e4b861b |
|
Details | md5 | 2 | b681aa600be5e3ca550d4ff4c884dc3d |
|
Details | md5 | 2 | ae870c46f3b8f44e576ffa1528c3ea37 |
|
Details | md5 | 2 | bbdd6bb2e8827e64cd1a440e05c0d537 |
|
Details | md5 | 2 | 0753857710dcf96b950e07df9cdf7911 |
|
Details | md5 | 3 | d01781f1246fd1b64e09170bd6600fe1 |
|
Details | md5 | 2 | 1381148d543c0de493b13ba8ca17c14f |
|
Details | Threat Actor Identifier - APT | 181 | APT33 |
|
Details | Url | 1 | https://www.fireeye.com/blog/threat-research/2017/09/apt33-insights-into-iranian-cyber-espionage.html |