LOCK LIKE A PRO
Image Description
Common Information
Type Value
UUID 985f5a3b-6d1b-4a66-8aa6-9c1b6511acf7
Fingerprint fd8d0299ba4f805e515666f24565cf315edd022166f64e809ec1c901d9e6819a
Analysis status DONE
Considered CTI value 2
Text language
Published Dec. 7, 2020, 4:37 p.m.
Added to db March 12, 2024, 6:43 p.m.
Last updated Aug. 31, 2024, 4:25 a.m.
Headline LOCK LIKE A PRO
Title LOCK LIKE A PRO
Detected Hints/Tags/Attributes 170/4/40
Attributes
Details Type #Events CTI Value
Details CVE 19
cve-2019-0859
Details Domain 35
group-ib.com
Details Domain 136
mail.com
Details Domain 9
cert-gib.com
Details Domain 101
www.group-ib.com
Details Email 9
response@cert-gib.com
Details Email 1
internationalsales@group-ib.com
Details Email 22
info@group-ib.com
Details File 1
888888.png
Details File 312
calc.exe
Details File 1
%random_name%.exe
Details File 1208
powershell.exe
Details File 1
reyvzfl.exe
Details File 1122
svchost.exe
Details File 345
vssadmin.exe
Details MITRE ATT&CK Techniques 183
T1566.002
Details MITRE ATT&CK Techniques 365
T1204.002
Details MITRE ATT&CK Techniques 310
T1047
Details MITRE ATT&CK Techniques 460
T1059.001
Details MITRE ATT&CK Techniques 137
T1059.005
Details MITRE ATT&CK Techniques 380
T1547.001
Details MITRE ATT&CK Techniques 275
T1053.005
Details MITRE ATT&CK Techniques 208
T1068
Details MITRE ATT&CK Techniques 627
T1027
Details MITRE ATT&CK Techniques 40
T1197
Details MITRE ATT&CK Techniques 39
T1484
Details MITRE ATT&CK Techniques 298
T1562.001
Details MITRE ATT&CK Techniques 71
T1078.002
Details MITRE ATT&CK Techniques 289
T1003
Details MITRE ATT&CK Techniques 99
T1087.002
Details MITRE ATT&CK Techniques 1006
T1082
Details MITRE ATT&CK Techniques 585
T1083
Details MITRE ATT&CK Techniques 160
T1021.001
Details MITRE ATT&CK Techniques 139
T1021.002
Details MITRE ATT&CK Techniques 33
T1537
Details MITRE ATT&CK Techniques 442
T1071.001
Details MITRE ATT&CK Techniques 31
T1071.002
Details MITRE ATT&CK Techniques 276
T1490
Details MITRE ATT&CK Techniques 472
T1486
Details Windows Registry Key 9
HKLM\System\CurrentControlSet\Control\Terminal