G Data Red Paper 2014 Uroburos Highly complex espionage software with Russian roots
Image Description
Common Information
Type Value
UUID b3801aff-07c5-410c-8ff0-4715d1aea7d5
Fingerprint 3bbd85054769a7481eccf389461c51aeb31f8e7f092d4d12783f0e025266418c
Analysis status DONE
Considered CTI value 1
Text language
Published Feb. 28, 2014, 5:03 p.m.
Added to db Oct. 1, 2024, 2:52 p.m.
Last updated Oct. 1, 2024, 2:53 p.m.
Headline G Data Red Paper 2014 Uroburos Highly complex espionage software with Russian roots
Title G Data Red Paper 2014 Uroburos Highly complex espionage software with Russian roots
Detected Hints/Tags/Attributes 97/2/22
Attributes
Details Type #Events CTI Value
Details Domain 6
gdata.de
Details Domain 1
www.mspaintadventures.com
Details Domain 622
en.wikipedia.org
Details Domain 19
vnd.ms
Details Domain 123
www.reuters.com
Details Email 2
intelligence@gdata.de
Details File 3
inj_snake_win32.dll
Details File 1
inj_snake_win64.dll
Details File 1
ultra3.sys
Details File 1
msw32.sys
Details File 1
vstor32.sys
Details File 3
inj_services_win32.dll
Details File 27
default.asp
Details md5 1
320F4E6EE421C1616BD058E73CFEA282
Details sha256 1
bf1cfc65b78f5222d35dc3bd2f0a87c9798bce5a48348649dd271ce395656341
Details Url 1
http://www.mspaintadventures.com/?s=6
Details Url 1
http://en.wikipedia.org/wiki/cast-128
Details Url 2
http://en.wikipedia.org/wiki/pass_the_hash
Details Url 1
http://en.wikipedia.org/wiki/pcap
Details Url 1
http://en.wikipedia.org/wiki/2008_cyberattack_on_united_states
Details Url 1
http://www.reuters.com/article/2011/06/17/us-usa-cybersecurity-worm-idustre75f5tb20110617
Details Windows Registry Key 1
HKLM\System\CurrentControlSet\Services\Ultra3