Rewterz Threat Alert – Qakbot aka Pinkslipbot or Qbot Malware Campaign – Active IOCs
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Financial Theft - T1657 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Software - T1592.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 4d0d2c22-b87a-4eb8-aa6d-a2964b348163 |
Fingerprint | 66610d25a9755f41 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | June 7, 2023, 10:04 a.m. |
Added to db | June 13, 2023, 12:32 p.m. |
Last updated | Sept. 4, 2024, 5:40 p.m. |
Headline | Rewterz Threat Alert – Qakbot aka Pinkslipbot or Qbot Malware Campaign – Active IOCs |
Title | Rewterz Threat Alert – Qakbot aka Pinkslipbot or Qbot Malware Campaign – Active IOCs |
Detected Hints/Tags/Attributes | 49/2/21 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 365 | ✔ | — | https://www.rewterz.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 21 | cve-2023-20889 |
|
Details | CVE | 6 | cve-2023-30576 |
|
Details | md5 | 1 | 179d4849f8d096122d05de3c7bebb4bd |
|
Details | md5 | 1 | 69917067f6e8bb8c0cf931206b9dd9ec |
|
Details | sha1 | 1 | ee3ead69ec6801721cde4ca6480f30ecff948c08 |
|
Details | sha1 | 1 | ac331d5296eebe099ada969c26b9f3bbab986a42 |
|
Details | sha256 | 1 | 2f6ae770a5d56ed8a2cfe262e196363b5c80e58468c66ff36cdf9c75306c2c55 |
|
Details | sha256 | 1 | 311a7bf05a590a55c2d24e7a16d7b1ae0a85dcd0cb46cd3f379b8ecaafdca2a6 |
|
Details | IPv4 | 1 | 77.126.99.230 |
|
Details | IPv4 | 1 | 24.234.220.88 |
|
Details | IPv4 | 1 | 151.62.238.176 |
|
Details | IPv4 | 1 | 85.57.212.13 |
|
Details | IPv4 | 1 | 199.27.66.213 |
|
Details | IPv4 | 6 | 12.172.173.82 |
|
Details | IPv4 | 1 | 105.184.209.117 |
|
Details | IPv4 | 1 | 193.80.73.200 |
|
Details | IPv4 | 1 | 93.187.148.45 |
|
Details | IPv4 | 1 | 37.189.89.196 |
|
Details | IPv4 | 1 | 182.75.189.42 |
|
Details | IPv4 | 1 | 65.95.141.84 |
|
Details | IPv4 | 1 | 84.216.198.201 |