CamuBot: New Financial Malware Targets Brazilian Banking Customers
Tags
country: | Brazil Portugal |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Direct Credentials - T1589.001 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Search Engines - T1593.002 Server - T1583.004 Server - T1584.004 Ssh - T1021.004 Tool - T1588.002 Connection Proxy - T1090 |
Common Information
Type | Value |
---|---|
UUID | 50d092b0-d642-4fef-aaca-85c4638f7052 |
Fingerprint | 7e9f3e39a6f5a444 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 4, 2018, 10 a.m. |
Added to db | Sept. 3, 2024, 1:15 p.m. |
Last updated | Oct. 23, 2024, 2:36 a.m. |
Headline | CamuBot: New Financial Malware Targets Brazilian Banking Customers |
Title | CamuBot: New Financial Malware Targets Brazilian Banking Customers |
Detected Hints/Tags/Attributes | 59/3/9 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | File | 2 | windowssystem32netsh.exe |
|
Details | File | 3 | sshnet.dll |
|
Details | File | 13 | c:\windows\system32\netsh.exe |
|
Details | md5 | 1 | 9eab7ea297ea71057691c09b485d646f |
|
Details | md5 | 1 | a000fe90363517e0fc4c8d02f7830825 |
|
Details | md5 | 1 | 684AAA16C9B54E4645C8B5778DB7562F |
|
Details | md5 | 1 | CD27C9FC659B50776E3BD208A42F1E3F |
|
Details | md5 | 1 | 7D50411C9621F1AD00996C8CE0F1AC20 |
|
Details | sha256 | 1 | 30bfbf8d9f2833f0337133e196b4dc87825dfb7d33a3602d05ee876ecd6f1178 |