Rewterz Threat Alert – STOP (DJVU) Ransomware – Active IOCs
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 Software - T1592.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 916e7080-8699-46c2-8215-50101de80219 |
Fingerprint | 95b04853f25e9f5a |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Nov. 16, 2023, 10:35 a.m. |
Added to db | Nov. 20, 2023, 11:55 a.m. |
Last updated | Sept. 24, 2024, 12:30 a.m. |
Headline | Rewterz Threat Alert – STOP (DJVU) Ransomware – Active IOCs |
Title | Rewterz Threat Alert – STOP (DJVU) Ransomware – Active IOCs |
Detected Hints/Tags/Attributes | 30/1/9 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 365 | ✔ | — | https://www.rewterz.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 39 | api.2ip.ua |
|
Details | File | 29 | geo.json |
|
Details | md5 | 1 | e55f827967e847e839a6854ba8b0bfc0 |
|
Details | md5 | 1 | ad1f4ef175202d30916a890305ca230b |
|
Details | sha1 | 1 | 3c4349ff666894a677f37ca236ed13b0be96078e |
|
Details | sha1 | 1 | b9382557bb2eb93cde8ff52ece9ee1e58372ef99 |
|
Details | sha256 | 1 | 914f9f60b30b5cf8a8fbce3fb49bd9f261f58cca2706974c83a8f755a3e62bc8 |
|
Details | sha256 | 1 | ca45f40c10f30d2c60b2ab67afffc295763d61c890f92b4bc71885d96ac56e18 |
|
Details | Url | 28 | https://api.2ip.ua/geo.json |