Digging deep for PLATINUM - Microsoft Security Blog
Tags
country: | Malaysia |
attack-pattern: | Data Server - T1583.004 Server - T1584.004 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 6c0de4e3-59b4-4fc7-a5ec-d321eb0790b5 |
Fingerprint | fe1109d0bf058655 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | April 26, 2016, 11 a.m. |
Added to db | Sept. 26, 2022, 9:31 a.m. |
Last updated | Nov. 17, 2024, 6:55 p.m. |
Headline | Digging deep for PLATINUM |
Title | Digging deep for PLATINUM - Microsoft Security Blog |
Detected Hints/Tags/Attributes | 43/2/11 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 222 | www.blackhat.com |
|
Details | Domain | 5 | www.yumpu.com |
|
Details | File | 212 | winlogon.exe |
|
Details | File | 478 | lsass.exe |
|
Details | File | 1122 | svchost.exe |
|
Details | File | 2 | mstbl.dll |
|
Details | File | 2 | fgrps.dll |
|
Details | File | 2 | c:\program files\windows journal\templates\cpl\jnwmon.exe |
|
Details | File | 1 | bh-us-06-sotirov.pdf |
|
Details | Url | 1 | http://www.blackhat.com/presentations/bh-usa-06/bh-us-06-sotirov.pdf |
|
Details | Url | 1 | https://www.yumpu.com/en/document/view/14255220/alexsyscan13 |