Changes Detected in CHM Malware Distribution - ASEC BLOG
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Malware - T1587.001 Malware - T1588.001 Powershell - T1059.001 Powershell - T1086 Scripting - T1064 Scripting |
Common Information
Type | Value |
---|---|
UUID | 5cd9c1d8-df45-409c-a7fc-eb51013d517f |
Fingerprint | a52488faed3a87c3 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Aug. 10, 2023, 8 a.m. |
Added to db | Aug. 12, 2023, 1:01 a.m. |
Last updated | Sept. 4, 2024, 1:55 a.m. |
Headline | Changes Detected in CHM Malware Distribution |
Title | Changes Detected in CHM Malware Distribution - ASEC BLOG |
Detected Hints/Tags/Attributes | 34/2/10 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://asec.ahnlab.com/en/55972/ |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 17 | ✔ | ASEC | https://asec.ahnlab.com/en/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 7 | atusay.lat |
|
Details | Domain | 3 | zienk.sbs |
|
Details | File | 2 | mdp.chm |
|
Details | md5 | 3 | 056932151e3cc526ebf4ef5cf86ae0b4 |
|
Details | md5 | 3 | 258472c79fc3b9360ad560e26350b756 |
|
Details | md5 | 3 | 8d39335e67e797ad66c3953c3d6203ce |
|
Details | md5 | 3 | 790c5f50942a502252a00b9878db9496 |
|
Details | md5 | 3 | 7c949f375c56e7de7a3c4f0a9a19c4e5 |
|
Details | Url | 7 | https://atusay.lat/kxydo |
|
Details | Url | 3 | https://zienk.sbs/kjntf |