Rewterz Threat Alert – Lazarus APT Group – Active IOCs - Rewterz
Tags
country: | North Korea Japan South Korea United States Of America |
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | 14c7fb09-7129-4972-ad93-d369d9a24286 |
Fingerprint | 8bb048d16f458eef |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Jan. 27, 2022, 4 p.m. |
Added to db | Dec. 19, 2024, 6:33 a.m. |
Last updated | Dec. 19, 2024, 9:10 a.m. |
Headline | Rewterz Threat Alert – Lazarus APT Group – Active IOCs |
Title | Rewterz Threat Alert – Lazarus APT Group – Active IOCs - Rewterz |
Detected Hints/Tags/Attributes | 28/2/22 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 70 | cve-2021-4034 |
|
Details | Domain | 1 | allinfostudio.com |
|
Details | Domain | 1 | yourblogcenter.com |
|
Details | Domain | 2 | www.docusign.agency |
|
Details | Domain | 2 | drive.cloudplus.one |
|
Details | md5 | 1 | 8df7777ac7315c5e256ce35ea36cc73f |
|
Details | md5 | 1 | 750b7f389dc47d73d0c77d76fbaccfc3 |
|
Details | md5 | 1 | c1bce93930a950f11bf631ca3b32b510 |
|
Details | md5 | 2 | 934c7b7c31d84728f0086be9b80ee1e4 |
|
Details | sha1 | 1 | 7d09178e4702790ec370e50b973528aec5bf0e3a |
|
Details | sha1 | 1 | a553bfc196fe4aab91e4a99005e71126527e27f1 |
|
Details | sha1 | 1 | 5e26b26cd5f6b7509a2870bb63bd1ff553a5cc90 |
|
Details | sha1 | 1 | 18e4203dab96fefd1b2c0c7e653b354fb3d27add |
|
Details | sha256 | 1 | e5466b99c1af9fe3fefdd4da1e798786a821c6d853a320d16cc10c06bc6f3fc5 |
|
Details | sha256 | 1 | 928e92a0d08fab2e19bb07601f4904f60ed265a9f030d938c5a5454b4ed69af7 |
|
Details | sha256 | 1 | 3f01f16519c636e7b0ae5e9f01c0645d38485cb9117e2ca799ad98183437a73d |
|
Details | sha256 | 1 | a3a1968fefab3c9d11976f8c00a9f726e0729f8e21761247f41790b4669bfde8 |
|
Details | Url | 1 | http://www.docusign.agency/1 |
|
Details | Url | 1 | http://www.docusign.agency/2 |
|
Details | Url | 2 | https://www.docusign.agency/wg70guidhxvwk3s/fcflkc7zy |
|
Details | Url | 2 | https://www.docusign.agency/jzqvfmz9mf2wf5tkgeegrz2si09qqjbacdhn46xpjrs |
|
Details | Url | 1 | https://drive.cloudplus.one/xg/xjyz4lisxpxr8n07y5jfdbk7jxlnhtom0rkjaz8w |