Rewterz Threat Alert – Agent Tesla Malware – IOCs - Rewterz
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | 67465a4e-f1ed-4679-b49e-a8a7e92906a9 |
Fingerprint | 8392ed546615a74f |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Aug. 3, 2020, 1:05 p.m. |
Added to db | Dec. 19, 2024, 1:58 a.m. |
Last updated | Dec. 19, 2024, 8:19 p.m. |
Headline | Rewterz Threat Alert – Agent Tesla Malware – IOCs |
Title | Rewterz Threat Alert – Agent Tesla Malware – IOCs - Rewterz |
Detected Hints/Tags/Attributes | 19/1/15 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 3 | cve-2020-16166 |
|
Details | Domain | 10 | webcam.it |
|
Details | Domain | 1 | mcmegypt.com |
|
Details | Domain | 6 | admaris.ir |
|
Details | Domain | 5 | admindepartment.ir |
|
Details | Url | 1 | http://mcmegypt.com/a/owininilogs.txt |
|
Details | Url | 1 | http://admaris.ir/bobbyx/mikex.exe |
|
Details | Url | 1 | http://admaris.ir/kingx/africax.exe |
|
Details | Url | 1 | http://admaris.ir/nwamax/nwamaz.exe |
|
Details | Url | 1 | http://admaris.ir/kingx/turkguyz.exe |
|
Details | Url | 1 | http://admindepartment.ir/arinzex/arinzex.exe |
|
Details | Url | 1 | http://admaris.ir/bobbyx/bobbyx.exe |
|
Details | Url | 1 | http://admaris.ir/josh/josh.exe |
|
Details | Url | 1 | http://admaris.ir/mazx/mazx.exe |
|
Details | Url | 1 | http://admindepartment.ir/mazx/tserver.exe |