G Data Red Paper 2014 Uroburos Highly complex espionage software with Russian roots
Common Information
Type | Value |
---|---|
UUID | b3801aff-07c5-410c-8ff0-4715d1aea7d5 |
Fingerprint | 3bbd85054769a7481eccf389461c51aeb31f8e7f092d4d12783f0e025266418c |
Analysis status | DONE |
Considered CTI value | 1 |
Text language | |
Published | Feb. 28, 2014, 5:03 p.m. |
Added to db | Oct. 1, 2024, 2:52 p.m. |
Last updated | Oct. 1, 2024, 2:53 p.m. |
Headline | G Data Red Paper 2014 Uroburos Highly complex espionage software with Russian roots |
Title | G Data Red Paper 2014 Uroburos Highly complex espionage software with Russian roots |
Detected Hints/Tags/Attributes | 97/2/22 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 6 | gdata.de |
|
Details | Domain | 1 | www.mspaintadventures.com |
|
Details | Domain | 622 | en.wikipedia.org |
|
Details | Domain | 19 | vnd.ms |
|
Details | Domain | 123 | www.reuters.com |
|
Details | 2 | intelligence@gdata.de |
||
Details | File | 3 | inj_snake_win32.dll |
|
Details | File | 1 | inj_snake_win64.dll |
|
Details | File | 1 | ultra3.sys |
|
Details | File | 1 | msw32.sys |
|
Details | File | 1 | vstor32.sys |
|
Details | File | 3 | inj_services_win32.dll |
|
Details | File | 27 | default.asp |
|
Details | md5 | 1 | 320F4E6EE421C1616BD058E73CFEA282 |
|
Details | sha256 | 1 | bf1cfc65b78f5222d35dc3bd2f0a87c9798bce5a48348649dd271ce395656341 |
|
Details | Url | 1 | http://www.mspaintadventures.com/?s=6 |
|
Details | Url | 1 | http://en.wikipedia.org/wiki/cast-128 |
|
Details | Url | 2 | http://en.wikipedia.org/wiki/pass_the_hash |
|
Details | Url | 1 | http://en.wikipedia.org/wiki/pcap |
|
Details | Url | 1 | http://en.wikipedia.org/wiki/2008_cyberattack_on_united_states |
|
Details | Url | 1 | http://www.reuters.com/article/2011/06/17/us-usa-cybersecurity-worm-idustre75f5tb20110617 |
|
Details | Windows Registry Key | 1 | HKLM\System\CurrentControlSet\Services\Ultra3 |