Стилеры распространяются через рекламу в поиске Google
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Malvertising - T1583.008 Powershell - T1059.001 Software - T1592.002 Powershell - T1086 |
Common Information
Type | Value |
---|---|
UUID | 387f0a6c-ff88-4116-b257-be6e74ac5ac5 |
Fingerprint | 5028d2a65277b96b |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | March 9, 2023, 1 p.m. |
Added to db | March 9, 2023, 11:52 a.m. |
Last updated | Nov. 18, 2024, 1:24 p.m. |
Headline | Вредоносная реклама в поисковиках |
Title | Стилеры распространяются через рекламу в поиске Google |
Detected Hints/Tags/Attributes | 8/2/17 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://securelist.ru/malvertising-through-search-engines/106973/ |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 224 | ✔ | Securelist | https://securelist.ru/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 3 | 1-windows-x64.zip |
|
Details | Domain | 2 | blender3d-software.net |
|
Details | Domain | 2 | blender3d-software.org |
|
Details | Domain | 2 | afterburner-software.org |
|
Details | Domain | 2 | tradingviews-software.org |
|
Details | Domain | 2 | unity-download.com |
|
Details | Domain | 2 | blahder3dsoft.store |
|
Details | File | 3 | 1-windows-x64.zip |
|
Details | File | 2130 | cmd.exe |
|
Details | File | 1212 | powershell.exe |
|
Details | File | 40 | aspnet_compiler.exe |
|
Details | md5 | 2 | E0BDF36E4A7CF1B332DC42FD8914BA8B |
|
Details | md5 | 2 | BBA8AA93FCDDA5AC7663E90C0EEFA2E7 |
|
Details | IPv4 | 6 | 45.93.201.114 |
|
Details | IPv4 | 2 | 91.229.23.200 |
|
Details | Url | 2 | http://45.93.201.114/docs/[randomchars].txt |
|
Details | Url | 2 | https://blahder3dsoft.store/blender.rar |