警惕!反追踪型僵尸网络家族XorBot改头换面,来势汹汹 | CTF导航
Tags
attack-pattern: | Botnet - T1583.005 Botnet - T1584.005 |
Common Information
Type | Value |
---|---|
UUID | 34319e27-d20a-42f4-a609-1c0ef8503a29 |
Fingerprint | 97f4e2122997fce6 |
Analysis status | DONE |
Considered CTI value | -2 |
Text language | |
Published | Nov. 5, 2024, midnight |
Added to db | Nov. 20, 2024, 2:31 p.m. |
Last updated | Dec. 4, 2024, 7:05 a.m. |
Headline | 警惕!反追踪型僵尸网络家族XorBot改头换面,来势汹汹 |
Title | 警惕!反追踪型僵尸网络家族XorBot改头换面,来势汹汹 | CTF导航 |
Detected Hints/Tags/Attributes | 9/1/11 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://www.ctfiot.com/216263.html |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 426 | ✔ | CTF导航 | https://www.ctfiot.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 80 | cve-2014-8361 |
|
Details | CVE | 79 | cve-2017-17215 |
|
Details | CVE | 43 | cve-2023-1389 |
|
Details | Domain | 220 | mp.weixin.qq.com |
|
Details | Domain | 34 | conn.masjesu.zip |
|
Details | File | 34 | masjesu.zip |
|
Details | md5 | 2 | 12f0e9582f0a65984653f75466709743 |
|
Details | sha256 | 3 | 8bc5e3bff5150738699927ca2b95f3e3bfd87aed44c30fc61fac788248528579 |
|
Details | IPv4 | 23 | 216.126.231.240 |
|
Details | Url | 1 | https://mp.weixin.qq.com/s/7ipxctbqqsh-qh9lc72-zq |
|
Details | Url | 10 | https://nti.nsfocus.com |