Rewterz Threat Alert – ZLoader Actively Targeting Financial Organizations – IoCs - Rewterz
Tags
attack-pattern: | Data Credentials - T1589.001 Financial Theft - T1657 Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 New Service - T1050 |
Common Information
Type | Value |
---|---|
UUID | 3128492f-3e02-467a-831a-7325cd83fcb8 |
Fingerprint | e3ba81732f868a8f |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | April 20, 2020, 10:13 a.m. |
Added to db | Dec. 19, 2024, 10:38 a.m. |
Last updated | Dec. 22, 2024, 12:40 p.m. |
Headline | Rewterz Threat Alert – ZLoader Actively Targeting Financial Organizations – IoCs |
Title | Rewterz Threat Alert – ZLoader Actively Targeting Financial Organizations – IoCs - Rewterz |
Detected Hints/Tags/Attributes | 37/1/11 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 15 | o2.pl |
|
Details | Domain | 166 | aol.com |
|
Details | Domain | 1 | reneixer.org |
|
Details | Domain | 1 | saidulhussen.com |
|
Details | Domain | 1 | sarkarjewells.com |
|
Details | Domain | 1 | semplyusya.ru |
|
Details | 1 | gagnus.telilmaldurv@aol.com |
||
Details | Url | 1 | http://reneixer.org/wp/wp-content/themes/calliope/wp_data.php |
|
Details | Url | 1 | http://saidulhussen.com/wp-content/themes/calliope/wp-front.php |
|
Details | Url | 1 | http://sarkarjewells.com/wp-content/themes/calliope/wp-front.php |
|
Details | Url | 1 | http://semplyusya.ru/wp-content/themes/calliope/wp_data.php |