On the Actors Behind MEVADE/SEFNIT
Image Description
Common Information
Type Value
UUID f78b9938-2016-450f-b4d5-59fc6e89954b
Fingerprint 817ff9931a542f8a57c11ae354a18f802fbf3e808332a75b03c5561ae4f44ed2
Analysis status DONE
Considered CTI value 0
Text language
Published July 8, 2014, 1:13 a.m.
Added to db April 14, 2024, 11:54 a.m.
Last updated Aug. 30, 2024, 11 p.m.
Headline On the Actors Behind MEVADE/SEFNIT
Title On the Actors Behind MEVADE/SEFNIT
Detected Hints/Tags/Attributes 82/2/37
Attributes
Details Type #Events CTI Value
Details Domain 1
www.installbrain.com
Details Domain 1
www.ibario.com
Details Domain 1
unknownfile.com
Details Domain 46
vk.com
Details Domain 1
codeconst.com
Details Domain 1
dev.codeconst.com
Details Domain 1
master.codeconst.com
Details Domain 9
blog.torproject.org
Details Domain 24
blog.fox-it.com
Details Domain 177
blog.trendmicro.com
Details Domain 22
about-threats.trendmicro.com
Details Domain 397
www.microsoft.com
Details Domain 38
blogs.technet.com
Details Domain 8
www.timesofisrael.com
Details Domain 604
www.trendmicro.com
Details File 11
search.aspx
Details File 1
mevade-and-sefnit-stealthy-click-fraud.aspx
Details File 1
tackling-the-sefnit-botnet-tor-hazard.aspx
Details File 1
sefnit-s-tor-botnet-c-amp-c-details.aspx
Details File 1
rotbrow-the-sefnit-distributor.aspx
Details sha1 1
e83cae08441b360936594e2a59814b4fe3bdad0c
Details IPv4 1
37.58.66.234
Details Url 1
http://www.installbrain.com
Details Url 1
http://www.ibario.com
Details Url 1
http://unknownfile.com
Details Url 1
https://blog.torproject.org/blog/how-to-handle-millions-new-tor-
Details Url 1
http://blog.fox-it.com/2013/09/05/large-botnet-cause-of-recent-tor-
Details Url 20
http://blog.trendmicro.com
Details Url 1
http://about-threats.trendmicro.com/us/search.aspx?p=sefnit
Details Url 3
http://about-threats.trendmicro.com/us
Details Url 1
http://about-threats.trendmicro.com/us/search.aspx?p=mevade
Details Url 1
http://about-threats.trendmicro.com/us/malware/bkdr_mevade.c
Details Url 1
http://www.microsoft.com/security/portal/threat/encyclopedia/entry.
Details Url 2
http://blogs.technet.com/b/mmpc
Details Url 1
http://blogs.technet.com/b/mmpc/archive/2014/03/05
Details Url 1
http://about-threats.trendmicro.com/us/malware/adw_brantall.
Details Url 1
http://www.timesofisrael.com/meet-ibario-