Rewterz Threat Alert – IcedID Banking Trojan aka BokBot – Active IOCs
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Keylogging - T1056.001 Keylogging - T1417.001 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Software - T1592.002 Vulnerabilities - T1588.006 Denial Of Service |
Common Information
Type | Value |
---|---|
UUID | 35543371-5252-4ebc-9e6e-5a3d91b1f5b6 |
Fingerprint | a6b65da5a9454f05 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | July 10, 2023, 7:41 a.m. |
Added to db | July 21, 2023, 10:02 a.m. |
Last updated | Sept. 5, 2024, 12:59 a.m. |
Headline | Rewterz Threat Alert – IcedID Banking Trojan aka BokBot – Active IOCs |
Title | Rewterz Threat Alert – IcedID Banking Trojan aka BokBot – Active IOCs |
Detected Hints/Tags/Attributes | 39/2/14 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 365 | ✔ | — | https://www.rewterz.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 36 | cve-2023-3596 |
|
Details | CVE | 11 | cve-2023-20899 |
|
Details | md5 | 1 | aaa516ff062b582b61cec398185d1dcf |
|
Details | md5 | 1 | e63581c774a4c3182139a3f6ffab5abd |
|
Details | md5 | 1 | b7e00c20de3ee65c6511774d9ec7258b |
|
Details | md5 | 1 | ed60961dc668399d829b01608d0032c5 |
|
Details | sha1 | 1 | c6521033a058aa34c8e330317af377639d7943a3 |
|
Details | sha1 | 1 | 2588e3a4b3ddff02e4a4d64040b243a5fe7a6ba7 |
|
Details | sha1 | 1 | cc5915fbf3291d6a721ff5ef968760f1447b8397 |
|
Details | sha1 | 1 | 15ebac7bca2ee4a0aa2a24c0db934073bddd55ed |
|
Details | sha256 | 1 | 2495778f3a15543896ff57a44e8eff9f232cfc0fc4c09aeb211d964329f2144d |
|
Details | sha256 | 1 | 3bf238c077ccf822b9aa0ec5724de1619caf0472dd281bb5522c531850f00212 |
|
Details | sha256 | 1 | 93296266fa08b301da48418e8b88cc4f9d453eb9d844d39c56619d0f741f2a29 |
|
Details | sha256 | 1 | d2ec3c0c88dfa1c27bd8225522f99ec50bcbbe15677b3cf34a2b0ba5a415e973 |