安全事件周报 2023-04-03 第14周
Tags
attack-pattern: Data Javascript - T1059.007
Common Information
Type Value
UUID 660c5a53-dcfc-409b-8ab1-724588dcc086
Fingerprint c1a3fdf1518662c0
Analysis status DONE
Considered CTI value 2
Text language
Published April 3, 2023, midnight
Added to db April 11, 2023, 12:53 p.m.
Last updated Nov. 17, 2024, 5:54 p.m.
Headline 安全事件周报 2023-04-03 第14周
Title 安全事件周报 2023-04-03 第14周
Detected Hints/Tags/Attributes 45/1/39
Attributes
Details Type #Events CTI Value
Details CVE 6
cve-2023-29218
Details CVE 5
cve-2022-27597
Details CVE 5
cve-2022-27598
Details CVE 30
cve-2013-3900
Details CVE 34
cve-2022-27926
Details Domain 12
urlqh.cn
Details Domain 26
efile.com
Details Domain 23
irs.gov
Details Domain 1
hrblock.com
Details Domain 91
360.net
Details Domain 100
cert.360.cn
Details File 12
popper.js
Details File 1
恶意软件popper.js
Details File 1
观察到一个名为guard64.dll
Details File 1
它被加载到受感染的3cxdesktopapp.exe
Details File 30
utilman.exe
Details Threat Actor Identifier - APT-C 79
APT-C-23
Details Url 1
http://urlqh.cn/n3nif
Details Url 1
http://urlqh.cn/n4kdx
Details Url 1
http://urlqh.cn/n4ajk
Details Url 1
http://urlqh.cn/n2hmg
Details Url 1
http://urlqh.cn/n34wk
Details Url 1
http://urlqh.cn/n2l02
Details Url 1
http://urlqh.cn/n2m6h
Details Url 1
http://urlqh.cn/n3lga
Details Url 1
http://urlqh.cn/n0oao
Details Url 1
http://urlqh.cn/n10ur
Details Url 1
http://urlqh.cn/n4s6v
Details Url 1
http://urlqh.cn/n0ibi
Details Url 1
http://urlqh.cn/n2kkk
Details Url 1
http://urlqh.cn/n2lx4
Details Url 1
http://urlqh.cn/n3jsp
Details Url 1
http://urlqh.cn/n61zv
Details Url 1
http://urlqh.cn/n1hfg
Details Url 1
http://urlqh.cn/n2a37
Details Url 1
http://urlqh.cn/n2etm
Details Url 1
http://urlqh.cn/n3c01
Details Url 87
http://360.net
Details Url 93
https://cert.360.cn