Rewterz Threat Alert – APT37 aka GoldBackDoor Group – Active IOCs
Tags
country: | Cambodia North Korea Japan Vietnam |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Domains - T1583.001 Domains - T1584.001 Exploits - T1587.004 Exploits - T1588.005 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Software - T1592.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 60837641-ca34-4350-9476-2c03857dc761 |
Fingerprint | a63e01a1a905cf4d |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | May 29, 2023, 8:34 a.m. |
Added to db | June 5, 2023, 2:42 p.m. |
Last updated | Nov. 8, 2024, 9:30 a.m. |
Headline | Rewterz Threat Alert – APT37 aka GoldBackDoor Group – Active IOCs |
Title | Rewterz Threat Alert – APT37 aka GoldBackDoor Group – Active IOCs |
Detected Hints/Tags/Attributes | 46/3/15 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 365 | ✔ | — | https://www.rewterz.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 10 | cve-2022-47177 |
|
Details | File | 2 | appendix.pdf |
|
Details | md5 | 1 | 6a0aa1baee0f621768130d8be822d6f0 |
|
Details | md5 | 1 | 23d55b0f6a502c7ed3a70d41272b0732 |
|
Details | md5 | 1 | ea64d820b7ee387d0e811bca0104d9e4 |
|
Details | md5 | 1 | a573c3a5f504fd22c302fbba6af0ab09 |
|
Details | sha1 | 1 | 7cb2c5009dc85fa80697ba4678a8545431ba82ad |
|
Details | sha1 | 1 | 36a2c2cd63e3ca23a7934cfb3e7a957f2b5363f8 |
|
Details | sha1 | 1 | 6f48f58d80ae41f6b979402696c70db74afc3135 |
|
Details | sha1 | 1 | 49c709788b9d18fa8e55b1ec7bbf114998a30d8c |
|
Details | sha256 | 2 | 913830666dd46e96e5ecbecc71e686e3c78d257ec7f5a0d0a451663251715800 |
|
Details | sha256 | 2 | cfbd704cab3a8edd64f8bf89da7e352adf92bd187b3a7e4d0634a2dc764262b5 |
|
Details | sha256 | 2 | af74d416b65217d0b15163e7b3fd5d0702d65f88b260c269c128739e7e7a4c4d |
|
Details | sha256 | 2 | 7e9f91f0cfe3769df30608a88091ee19bc4cf52e8136157e4e0a5b6530d510ec |
|
Details | Threat Actor Identifier - APT | 277 | APT37 |