DERO cryptojacking adopts new techniques to evade detection | Wiz Blog
Tags
Common Information
Type | Value |
---|---|
UUID | 21bbcbd3-d316-4bac-9c76-5f67819cfa96 |
Fingerprint | 3505d5910f359785 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | June 7, 2024, 8:04 a.m. |
Added to db | Aug. 31, 2024, 10:28 a.m. |
Last updated | Nov. 17, 2024, 6:56 p.m. |
Headline | Pause off my cluster: DERO cryptojacking takes a new shape |
Title | DERO cryptojacking adopts new techniques to evade detection | Wiz Blog |
Detected Hints/Tags/Attributes | 66/3/22 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 398 | ✔ | Wiz Blog | RSS feed | https://www.wiz.io/blog/rss | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 14 | entrypoint.sh |
|
Details | Domain | 1 | community-pools.mysrv.cloud |
|
Details | Domain | 1 | windowsupdatesupport.link |
|
Details | Domain | 1 | name.windowsupdatesupport.link |
|
Details | Domain | 1 | ddns.sh |
|
Details | Domain | 1 | getpy.sh |
|
Details | Domain | 41 | wiz.io |
|
Details | 8 | threat.hunters@wiz.io |
||
Details | md5 | 1 | 42e82a37cc6b44f7bc58c6ef6bf3e9e2 |
|
Details | md5 | 1 | 22de8e4b08be5c2b1cc5eb2012739786 |
|
Details | md5 | 1 | cc47cb1bbef442d2f6aa7bc0b0843c88 |
|
Details | IPv4 | 1 | 209.141.32.182 |
|
Details | MITRE ATT&CK Techniques | 542 | T1190 |
|
Details | MITRE ATT&CK Techniques | 16 | T1610 |
|
Details | MITRE ATT&CK Techniques | 183 | T1036.005 |
|
Details | MITRE ATT&CK Techniques | 160 | T1027.002 |
|
Details | MITRE ATT&CK Techniques | 107 | T1496 |
|
Details | MITRE ATT&CK Techniques | 504 | T1140 |
|
Details | MITRE ATT&CK Techniques | 82 | T1583.001 |
|
Details | MITRE ATT&CK Techniques | 492 | T1105 |
|
Details | MITRE ATT&CK Techniques | 2 | T1564.011 |
|
Details | MITRE ATT&CK Techniques | 247 | T1070 |