Cloud Atlas APT IOCs - Part 3 - SEC-1275-1
Tags
attack-pattern: | Domains - T1583.001 Domains - T1584.001 Kerberoasting - T1558.003 Powershell - T1059.001 Kerberoasting - T1208 Powershell - T1086 |
Common Information
Type | Value |
---|---|
UUID | 221e7498-9327-407f-9619-36c66196bc53 |
Fingerprint | 6ea0ef895b936d5b |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Dec. 24, 2024, midnight |
Added to db | Dec. 24, 2024, 8:50 a.m. |
Last updated | Dec. 24, 2024, 8:51 a.m. |
Headline | Cloud Atlas APT IOCs - Part 3 |
Title | Cloud Atlas APT IOCs - Part 3 - SEC-1275-1 |
Detected Hints/Tags/Attributes | 10/1/57 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://1275.ru/ioc/8717/cloud-atlas-apt-iocs-part-3/?mtm_campaign=rss |
URL Provider
Details | Provider | Source level domain |
---|---|---|
Details | 1275.ru | 1275.ru |
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 8 | ✔ | Архивы IOC - SEC-1275-1 | https://1275.ru/ioc/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 145 | cve-2018-0802 |
|
Details | Domain | 4 | content-protect.net |
|
Details | Domain | 4 | control-issue.net |
|
Details | Domain | 4 | gosportal.net |
|
Details | Domain | 4 | kim.nl.tab.digital |
|
Details | Domain | 5 | mirconnect.info |
|
Details | Domain | 4 | net-plugin.org |
|
Details | Domain | 4 | office-confirm.com |
|
Details | Domain | 4 | onesoftware.info |
|
Details | Domain | 4 | riamir.net |
|
Details | Domain | 4 | sber-cloud.info |
|
Details | Domain | 4 | serverop-parametrs.com |
|
Details | Domain | 4 | triger-working.com |
|
Details | Domain | 4 | webdav.mydrive.ch |
|
Details | Domain | 4 | webdav.opendrive.com |
|
Details | Domain | 7 | webdav.yandex.ru |
|
Details | Domain | 4 | web-privacy.net |
|
Details | Domain | 4 | web-wathapp.com |
|
Details | Domain | 4 | yandesks.net |
|
Details | Domain | 4 | yandesktop.com |
|
Details | Domain | 4 | yandisk.info |
|
Details | File | 4 | nl.tab |
|
Details | File | 2 | mirconnect.inf |
|
Details | File | 1 | onesoftware.inf |
|
Details | File | 1 | sber-cloud.inf |
|
Details | File | 1 | yandisk.inf |
|
Details | md5 | 1 | 0139f32a523d453bc338a67ca45c224d |
|
Details | md5 | 1 | 016b6a035b44c1ad10d070abcdfe2f66 |
|
Details | md5 | 1 | 01db58a1d0ec85adc13290a6290ad9d6 |
|
Details | md5 | 1 | 0f37e1298e4c82098dc9318c7e65f9d2 |
|
Details | md5 | 1 | 15fd46ac775a30b1963281a037a771b1 |
|
Details | md5 | 1 | 160a65e830eb97aae6e1305019213558 |
|
Details | md5 | 1 | 184cf8660af7538cd1cd2559a10b6622 |
|
Details | md5 | 1 | 1af1f9434e4623b7046cf6360e0a520e |
|
Details | md5 | 1 | 1bfb9cba8aa23a401925d356b2f6e7ed |
|
Details | md5 | 1 | 21585d5881cc11ed1f615fdb2d7acc11 |
|
Details | md5 | 1 | 242e86e658fe6ab6e4c81b68162b3001 |
|
Details | md5 | 1 | 2d24044c0a5b9ebe4e01ded2bfc2b3a4 |
|
Details | md5 | 1 | 2fe7e75bc599b1c68b87cf2a3e7aa51f |
|
Details | md5 | 1 | 31b01387ca60a1771349653a3c6ad8ca |
|
Details | md5 | 1 | 36dd0fbd19899f0b23ade5a1de3c2fec |
|
Details | md5 | 1 | 389bc3b9417d893f3324221141edea00 |
|
Details | md5 | 1 | 389f6e6fd9dcc84c6e944dc387087a56 |
|
Details | md5 | 1 | 3a54acd967dd104522ba7d66f4d86544 |
|
Details | md5 | 1 | 3f12bf4a8d82654861b5b5993c012bfa |
|
Details | md5 | 1 | 49f8ed13a8a13799a34cc999b195bf16 |
|
Details | md5 | 1 | 4b96dc735b622a94d3c74c0be9858853 |
|
Details | md5 | 1 | 6fcee9878216019c8dfa887075c5e68e |
|
Details | md5 | 1 | 88be01f8c4a9f335d33fa7c384ca4666 |
|
Details | md5 | 1 | 9d3557cc5c444fe5d73e4c7fe1872414 |
|
Details | md5 | 1 | a30319545fda9e2da0532746c09130eb |
|
Details | md5 | 1 | aa8da99d5623fafed356a14e59acbb90 |
|
Details | md5 | 1 | cba05e11cb9d1d71f0fa70ecd1af2480 |
|
Details | md5 | 1 | cbfb691e95ee34a324f94ed1ff91bc23 |
|
Details | md5 | 1 | d445d443ace329fb244edc3e5146313b |
|
Details | md5 | 1 | f3f28018fb5108b516d802a038f90bde |
|
Details | md5 | 1 | f45008bf1889a8655d32a0eb93b8acdd |