Web Shells and NetWitness Part 2
Common Information
Type Value
UUID 3dedfc6c-2be3-4573-b6f8-8243168ab17c
Fingerprint 1ed5d48521238195
Analysis status DONE
Considered CTI value 1
Text language
Published Feb. 13, 2019, 1:25 p.m.
Added to db Jan. 18, 2023, 9:24 p.m.
Last updated Nov. 19, 2024, 1:59 p.m.
Headline NetWitness Community
Title Web Shells and NetWitness Part 2
Detected Hints/Tags/Attributes 50/1/5
Attributes
Details Type #Events CTI Value
Details Domain 455
www.google.com
Details Domain 20
alias.host
Details File 62
whoami.exe
Details File 56
tasklist.exe
Details Threat Actor Identifier - APT 297
APT27