Rewterz Threat Advisory – APT SideWinder Group – Active IOCs - Rewterz
Tags
country: | Afghanistan China Nepal Pakistan |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Malicious File - T1204.002 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Powershell - T1059.001 Vulnerabilities - T1588.006 Powershell - T1086 |
Common Information
Type | Value |
---|---|
UUID | 1649cbc7-29fb-4e40-914a-b2d144e80be8 |
Fingerprint | c2812dd7ce944f0d |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Feb. 23, 2022, 12:17 p.m. |
Added to db | Dec. 19, 2024, 2:44 a.m. |
Last updated | Dec. 20, 2024, 1:03 a.m. |
Headline | Rewterz Threat Advisory – APT SideWinder Group – Active IOCs |
Title | Rewterz Threat Advisory – APT SideWinder Group – Active IOCs - Rewterz |
Detected Hints/Tags/Attributes | 34/3/9 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 3 | cve-2021-35244 |
|
Details | Domain | 1 | dbms.crclab-bahria.org |
|
Details | File | 1 | crc.docx |
|
Details | md5 | 1 | b6669899c4616b8d9f7d38c4277499cf |
|
Details | sha1 | 1 | 2599615cf94da7dadee8c76c7745336e8f6a54ae |
|
Details | sha256 | 1 | 94214e83441e3a6a5cde971f6abe0d4bf226fd0750a0ad26d2241c085de9b604 |
|
Details | Threat Actor Identifier - APT-C | 37 | APT-C-17 |
|
Details | Threat Actor Identifier by Tencent | 48 | T-APT-04 |
|
Details | Url | 1 | https://dbms.crclab-bahria.org/5397/1/1322/2/0/0/0/m/files-54cc58cd/file.rtf |