Decrypted: HomuWitch Ransomware - Avast Threat Labs
Tags
country: | Netherlands Germany Indonesia Poland |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Password Cracking - T1110.002 Server - T1583.004 Server - T1584.004 Software - T1592.002 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | 318dda2e-a9d2-4974-80e7-bc9759d3b22f |
Fingerprint | 846434739477b651 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Feb. 20, 2024, 2:30 p.m. |
Added to db | Aug. 31, 2024, 12:35 a.m. |
Last updated | Nov. 19, 2024, 3:12 a.m. |
Headline | Decrypted: HomuWitch Ransomware |
Title | Decrypted: HomuWitch Ransomware - Avast Threat Labs |
Detected Hints/Tags/Attributes | 31/3/18 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 100 | ✔ | Avast Threat Labs | https://decoded.avast.io/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 4135 | github.com |
|
Details | Github username | 12 | avast |
|
Details | sha256 | 1 | 03e4f770157c11d86d462cc4e9ebeddee3130565221700841a7239e68409accf |
|
Details | sha256 | 1 | 0e42c452b5795a974061712928d5005169126ad1201bd2b9490f377827528e5d |
|
Details | sha256 | 1 | 16c3eea8ed3a44ee22dad8e8aec0c8c6b43c23741498f11337779e6621d1fe4e |
|
Details | sha256 | 1 | 33dd6dfd51b79dad25357f07a8fb4da47cec010e0f8e6d164c546a18ad2a762c |
|
Details | sha256 | 1 | 3546b2dd517a99249ef5fd8dfd2a8fd80cb89dfdc9e38602e1f3115634789316 |
|
Details | sha256 | 1 | 4ea00f1ffe2bbbf5476c0eb677ac75cf1a765fe5c8ce899f47eb8b344da878ed |
|
Details | sha256 | 1 | 6252cda4786396ebd7e9baf8ff0454d6af038aed48a7e4ec33cd9249816db2f4 |
|
Details | sha256 | 1 | 9343a0714a0e159b1d49b591f0835398076af8c8e2da56cbb8c9b7a15c9707c8 |
|
Details | sha256 | 1 | bd90468f50629728d717c53cd7806ba59d6ad9377163d0d3328d6db4db6a3826 |
|
Details | sha256 | 1 | cd4c3db443dbfd768c59575ede3b1e26002277c109d39ea020d1bc307374e309 |
|
Details | sha256 | 1 | fd32a8c5cd211b057fdf3e7cc27167296c71e3fb42daa488649cdf81f58f6848 |
|
Details | IPv4 | 1 | 78.142.0.42 |
|
Details | IPv4 | 1 | 79.137.207.233 |
|
Details | IPv4 | 1 | 185.216.68.97 |
|
Details | IPv4 | 1 | 193.164.150.225 |
|
Details | Url | 1 | https://github.com/avast/ioc/tree/master/homuwitch |