PowerPoint Presentation
Common Information
Type | Value |
---|---|
UUID | c8388592-8fd3-471c-843e-3536bb94d110 |
Fingerprint | 95d0141a84c32517cfdda6a540e05b6dd276d31aa1a2cdcaf71a84ed9320e05d |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Nov. 17, 2022, 5:37 p.m. |
Added to db | Feb. 7, 2024, 6:59 p.m. |
Last updated | Aug. 31, 2024, 2:45 a.m. |
Headline | PowerPoint Presentation |
Title | PowerPoint Presentation |
Detected Hints/Tags/Attributes | 119/4/113 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 37 | xmpp.jp |
|
Details | Domain | 85 | onionmail.org |
|
Details | Domain | 167 | tutanota.com |
|
Details | Domain | 144 | cock.li |
|
Details | Domain | 9 | disroot.org |
|
Details | Domain | 124 | www.sentinelone.com |
|
Details | Domain | 41 | www.hhs.gov |
|
Details | Domain | 435 | www.hivepro.com |
|
Details | 2 | decryptdata@xmpp.jp |
||
Details | 2 | decryptdata@onionmail.org |
||
Details | 3 | skynetwork@tutanota.com |
||
Details | 3 | skynetwork@onionmail.org |
||
Details | 3 | skynetwork@cock.li |
||
Details | 2 | getdecrypt@disroot.org |
||
Details | File | 82 | taskkill.exe |
|
Details | File | 2 | venus.exe |
|
Details | File | 2 | yjnz0n28zu.exe |
|
Details | File | 3 | 345.exe |
|
Details | File | 5 | executable.exe |
|
Details | File | 28 | program.exe |
|
Details | File | 2 | venus-ransomware-analyst-note.pdf |
|
Details | md5 | 2 | eae3f9f84a8b6756db599963aa4f49d1 |
|
Details | md5 | 1 | F5e72bf445387eddec000e0238adf873 |
|
Details | md5 | 2 | 0d4247600f91e28bd390c91dd61ccd7f |
|
Details | md5 | 2 | 9aa3cc9d7c641ea22cfa3e5233e13c94 |
|
Details | sha1 | 2 | 026ce3bceb3a82452f0fc38c0b9abfa90f2c9d87 |
|
Details | sha1 | 2 | 06757be6174bdc9ef8fe899bcbe5e6e5547dc059 |
|
Details | sha1 | 2 | 0d0bbcecc80ea3b1712678b24ba925ac2903531f |
|
Details | sha1 | 2 | 102b8625e5662c89efe4547dc2cb173be8b08851 |
|
Details | sha1 | 2 | 10f2ed474a9e0065fed2afebbfe81dc596f46542 |
|
Details | sha1 | 2 | 13315ee0ba756ac3e7edf2b9a4028b7649ece754 |
|
Details | sha1 | 2 | 1482e7fdbab29c3e8a2f3ccd1c6ddd48a54c06b0 |
|
Details | sha1 | 2 | 14d031138fb0aad2432cadf2e0d241ca75b2dfbb |
|
Details | sha1 | 3 | 1970f6c17567d56c3e7840fe33a6959dd887fca2 |
|
Details | sha1 | 2 | 1992336a5d752187c979e24a95a871d8932ade6d |
|
Details | sha1 | 2 | 1cb7e2ab7012990bd5051120c3ef8a438035aa88 |
|
Details | sha1 | 2 | 1fb9b8115d74cf38d6a90b9049c73ea6eb743643 |
|
Details | sha1 | 2 | 326dc3ca63d10968054153305a9564fac2a37ba3 |
|
Details | sha1 | 2 | 5166d17d8e9a91a3a36b5edaf168699b03bb13de |
|
Details | sha1 | 2 | 5d1229ece791a55823f60298cb7dcf9c0494f3ee |
|
Details | sha1 | 2 | 62383813a6ca85fc9c70051c361e0273e135593d |
|
Details | sha1 | 2 | 6bf35f44a2267755c2646c89c836bd618c4e964c |
|
Details | sha1 | 2 | 6e530c9a3eddabc29c2f8f6aca6c6f786ae052d6 |
|
Details | sha1 | 2 | 7f4bcc7d13bf3ebab836a770718cc8273470d660 |
|
Details | sha1 | 2 | 7f8cd9947f9c2bddd9586868c181b4c6a86f10a5 |
|
Details | sha1 | 2 | 88433f6f33d7b81178815412111d146185b9a857 |
|
Details | sha1 | 3 | 895eb3047e7a28ce219fdd7e7ad5ce2a61312d93 |
|
Details | sha1 | 2 | 969a91d0038c10599f0f1f647cf0da869b5ded34 |
|
Details | sha1 | 2 | ac1c4cb8a6920bb7276dbf1435040f4003f8580c |
|
Details | sha1 | 2 | ac348c2673f9c66d695bc75b65cbe32adc7887a6 |
|
Details | sha1 | 3 | ba145483608a4ea567ed3c3c2b7e396098f5386a |
|
Details | sha1 | 3 | c40909226c102ceb3cf97e9037c590f1623af013 |
|
Details | sha1 | 2 | c7a16493be181dbe5ec8d993883bbc1759d22131 |
|
Details | sha1 | 2 | c91f54077b8ad8dd8e3f5807181b941124a4e971 |
|
Details | sha1 | 2 | da452698643d21a0212d62bd293e0c250f684b14 |
|
Details | sha1 | 2 | e044edce8646124ddc39906e6fb6f02eaff16161 |
|
Details | sha1 | 2 | e47eefdacf2b1190d2c95cb2800628429bfa115b |
|
Details | sha1 | 2 | ec11f6abf13044a438a7f363bda2c9d5709d2475 |
|
Details | sha1 | 2 | fd30e7fcce4c1c372981cde822ba36ded96b7614 |
|
Details | sha1 | 2 | ff8747471c9641b17543038433137d7c0ffbcbb7 |
|
Details | IPv4 | 1 | 185.125.188.58 |
|
Details | IPv4 | 1 | 185.125.190.44 |
|
Details | IPv4 | 1 | 185.125.190.45 |
|
Details | IPv4 | 1 | 104.97.15.51 |
|
Details | IPv4 | 1 | 78.155.222.146 |
|
Details | IPv4 | 2 | 139.162.120.150 |
|
Details | MITRE ATT&CK Techniques | 695 | T1059 |
|
Details | MITRE ATT&CK Techniques | 207 | T1547 |
|
Details | MITRE ATT&CK Techniques | 380 | T1547.001 |
|
Details | MITRE ATT&CK Techniques | 440 | T1055 |
|
Details | MITRE ATT&CK Techniques | 504 | T1140 |
|
Details | MITRE ATT&CK Techniques | 152 | T1056 |
|
Details | MITRE ATT&CK Techniques | 585 | T1083 |
|
Details | MITRE ATT&CK Techniques | 1006 | T1082 |
|
Details | MITRE ATT&CK Techniques | 157 | T1560 |
|
Details | MITRE ATT&CK Techniques | 492 | T1105 |
|
Details | MITRE ATT&CK Techniques | 480 | T1053 |
|
Details | MITRE ATT&CK Techniques | 235 | T1562 |
|
Details | MITRE ATT&CK Techniques | 298 | T1562.001 |
|
Details | MITRE ATT&CK Techniques | 247 | T1070 |
|
Details | MITRE ATT&CK Techniques | 297 | T1070.004 |
|
Details | MITRE ATT&CK Techniques | 172 | T1555 |
|
Details | MITRE ATT&CK Techniques | 125 | T1555.003 |
|
Details | MITRE ATT&CK Techniques | 243 | T1018 |
|
Details | MITRE ATT&CK Techniques | 245 | T1016 |
|
Details | MITRE ATT&CK Techniques | 116 | T1134 |
|
Details | MITRE ATT&CK Techniques | 627 | T1027 |
|
Details | MITRE ATT&CK Techniques | 164 | T1574 |
|
Details | MITRE ATT&CK Techniques | 227 | T1574.002 |
|
Details | MITRE ATT&CK Techniques | 348 | T1036 |
|
Details | MITRE ATT&CK Techniques | 163 | T1573 |
|
Details | MITRE ATT&CK Techniques | 534 | T1005 |
|
Details | MITRE ATT&CK Techniques | 501 | T1012 |
|
Details | MITRE ATT&CK Techniques | 550 | T1112 |
|
Details | MITRE ATT&CK Techniques | 188 | T1120 |
|
Details | MITRE ATT&CK Techniques | 60 | T1202 |
|
Details | MITRE ATT&CK Techniques | 65 | T1491 |
|
Details | MITRE ATT&CK Techniques | 30 | T1491.001 |
|
Details | MITRE ATT&CK Techniques | 107 | T1564 |
|
Details | MITRE ATT&CK Techniques | 66 | T1564.003 |
|
Details | MITRE ATT&CK Techniques | 310 | T1047 |
|
Details | MITRE ATT&CK Techniques | 239 | T1106 |
|
Details | MITRE ATT&CK Techniques | 86 | T1124 |
|
Details | MITRE ATT&CK Techniques | 185 | T1518 |
|
Details | MITRE ATT&CK Techniques | 141 | T1518.001 |
|
Details | MITRE ATT&CK Techniques | 89 | T1114 |
|
Details | MITRE ATT&CK Techniques | 159 | T1095 |
|
Details | MITRE ATT&CK Techniques | 444 | T1071 |
|
Details | MITRE ATT&CK Techniques | 93 | T1485 |
|
Details | MITRE ATT&CK Techniques | 472 | T1486 |
|
Details | MITRE ATT&CK Techniques | 276 | T1490 |
|
Details | Url | 1 | https://www.sentinelone.com/blog/venus-ransomware-zeoticus-spin-off-shows- |
|
Details | Url | 2 | https://www.hhs.gov/sites/default/files/venus-ransomware-analyst-note.pdf |