Rewterz Threat Alert – TeamTNT Gains Full Remote Takeover of Cloud Instances - Rewterz
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Exploits - T1587.004 Exploits - T1588.005 Malvertising - T1583.008 Server - T1583.004 Server - T1584.004 Tool - T1588.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 1260fb39-d5e1-4041-a36d-260bb337c7cc |
Fingerprint | 6dbeb8c9ae0feb87 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 10, 2020, 11:20 a.m. |
Added to db | Dec. 19, 2024, 2:45 a.m. |
Last updated | Dec. 19, 2024, 7:30 p.m. |
Headline | Rewterz Threat Alert – TeamTNT Gains Full Remote Takeover of Cloud Instances |
Title | Rewterz Threat Alert – TeamTNT Gains Full Remote Takeover of Cloud Instances - Rewterz |
Detected Hints/Tags/Attributes | 22/2/10 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 2 | rhuancarlos.inforgeneses.inf.br |
|
Details | md5 | 3 | 8ffdba0c9708f153237aabb7d386d083 |
|
Details | sha1 | 2 | 712390c705335787f2601987746bda98657446d0 |
|
Details | sha256 | 2 | 340d9af58a3b3bedaae040ce9640dd3a9a8c30ddde2c85fb7aa28d2bff2d663e |
|
Details | sha256 | 7 | 139f393594aabb20543543bd7d3192422b886f58e04a910637b41f14d0cad375 |
|
Details | sha256 | 3 | 68ad2df23712767361d17a55ee13a3b482bee5a07ea3f3741c057db24b36bfce |
|
Details | sha256 | 2 | c88b9f32c143ee78b215b106320dbe79e28d39603353b0b9af2c806bcb9eb7b6 |
|
Details | IPv4 | 9 | 85.214.149.236 |
|
Details | Url | 2 | http://rhuancarlos.inforgeneses.inf.br |
|
Details | Url | 2 | http://85.214.149.236:443/sugarcrm/themes/default/images/default.jpg |