DERO cryptojacking adopts new techniques to evade detection | Wiz Blog
Common Information
Type Value
UUID 21bbcbd3-d316-4bac-9c76-5f67819cfa96
Fingerprint 3505d5910f359785
Analysis status DONE
Considered CTI value 2
Text language
Published June 7, 2024, 8:04 a.m.
Added to db Aug. 31, 2024, 10:28 a.m.
Last updated Nov. 17, 2024, 6:56 p.m.
Headline Pause off my cluster: DERO cryptojacking takes a new shape
Title DERO cryptojacking adopts new techniques to evade detection | Wiz Blog
Detected Hints/Tags/Attributes 66/3/22
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 398 Wiz Blog | RSS feed https://www.wiz.io/blog/rss 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 14
entrypoint.sh
Details Domain 1
community-pools.mysrv.cloud
Details Domain 1
windowsupdatesupport.link
Details Domain 1
name.windowsupdatesupport.link
Details Domain 1
ddns.sh
Details Domain 1
getpy.sh
Details Domain 41
wiz.io
Details Email 8
threat.hunters@wiz.io
Details md5 1
42e82a37cc6b44f7bc58c6ef6bf3e9e2
Details md5 1
22de8e4b08be5c2b1cc5eb2012739786
Details md5 1
cc47cb1bbef442d2f6aa7bc0b0843c88
Details IPv4 1
209.141.32.182
Details MITRE ATT&CK Techniques 542
T1190
Details MITRE ATT&CK Techniques 16
T1610
Details MITRE ATT&CK Techniques 183
T1036.005
Details MITRE ATT&CK Techniques 160
T1027.002
Details MITRE ATT&CK Techniques 107
T1496
Details MITRE ATT&CK Techniques 504
T1140
Details MITRE ATT&CK Techniques 82
T1583.001
Details MITRE ATT&CK Techniques 492
T1105
Details MITRE ATT&CK Techniques 2
T1564.011
Details MITRE ATT&CK Techniques 247
T1070