Arkei Variants: From Vidar to Mars Stealer
Tags
cmtmf-attack-pattern: | Code Injection |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Code Injection - T1540 Credentials - T1589.001 Malware - T1587.001 Malware - T1588.001 Software - T1592.002 |
Common Information
Type | Value |
---|---|
UUID | 319be608-0d76-4db3-9a9b-589720fa8ef5 |
Fingerprint | 56051b11a7378a93 |
Analysis status | IN_PROGRESS |
Considered CTI value | 0 |
Text language | |
Published | Dec. 27, 2022, 9:18 p.m. |
Added to db | Dec. 27, 2022, 10:44 p.m. |
Last updated | Nov. 17, 2024, 6:54 p.m. |
Headline | Arkei Variants: From Vidar to Mars Stealer |
Title | Arkei Variants: From Vidar to Mars Stealer |
Detected Hints/Tags/Attributes | 55/3/16 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 167 | ✔ | Cybersecurity on Medium | https://medium.com/feed/tag/cybersecurity | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 375 | cve-2017-11882 |
|
Details | File | 1260 | explorer.exe |
|
Details | File | 57 | eqnedt32.exe |
|
Details | File | 748 | kernel32.dll |
|
Details | File | 104 | sqlite3.dll |
|
Details | File | 44 | freebl3.dll |
|
Details | File | 51 | mozglue.dll |
|
Details | File | 51 | msvcp140.dll |
|
Details | File | 71 | nss3.dll |
|
Details | File | 41 | softokn3.dll |
|
Details | File | 69 | vcruntime140.dll |
|
Details | File | 5 | chrome_default.txt |
|
Details | File | 5 | default.txt |
|
Details | IPv4 | 124 | 192.168.0.0 |
|
Details | IPv4 | 132 | 10.0.0.0 |
|
Details | IPv4 | 81 | 172.16.0.0 |