Rewterz Threat Alert – LockBit Ransomware – Active IOCs
Tags
cmtmf-attack-pattern: | Masquerading |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Model Malware - T1587.001 Malware - T1588.001 Masquerading - T1655 Mshta - T1218.005 Phishing - T1660 Phishing - T1566 Powershell - T1059.001 Server - T1583.004 Server - T1584.004 Software - T1592.002 Masquerading - T1036 Mshta - T1170 Powershell - T1086 Denial Of Service Masquerading |
Common Information
Type | Value |
---|---|
UUID | 105bcd1d-3af9-48ef-b407-d029cad9e193 |
Fingerprint | a6721531bb05e742 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | May 8, 2023, 10:04 a.m. |
Added to db | May 15, 2023, 12:20 p.m. |
Last updated | Nov. 17, 2024, 6:54 p.m. |
Headline | Rewterz Threat Alert – LockBit Ransomware – Active IOCs |
Title | Rewterz Threat Alert – LockBit Ransomware – Active IOCs |
Detected Hints/Tags/Attributes | 56/3/8 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 365 | ✔ | — | https://www.rewterz.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 14 | cve-2023-2156 |
|
Details | File | 456 | mshta.exe |
|
Details | md5 | 1 | 5a70683b081a768bff0281f40ebbec89 |
|
Details | md5 | 1 | 59fe569fcc6b84aa8e8e74236fc8d8e2 |
|
Details | sha1 | 1 | 1d8fe9c1220ffb524c3e2162ce3b7d150c3f5c1c |
|
Details | sha1 | 1 | c9c71661709bdd9f9da212bcd5bb6373cb1e58a0 |
|
Details | sha256 | 1 | acfe3f344edfbd4f62f2e28ff96bb3c62b589ab895990ee2498a33280442c0b3 |
|
Details | sha256 | 1 | f7c432afe20c31ddd75dbb214f1b7aaeb400d9d17da6d9e3c0d7cf1dd38bf524 |