Hadooken and K4Spreader: The 8220 Gang's Latest Arsenal
Tags
Common Information
Type | Value |
---|---|
UUID | 95070bf5-2ea8-48f4-8ed3-92645aaa6539 |
Fingerprint | bc309553adb7afc5 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 30, 2024, 7:15 a.m. |
Added to db | Sept. 30, 2024, 9:50 a.m. |
Last updated | Nov. 17, 2024, 5:55 p.m. |
Headline | Hadooken and K4Spreader: The 8220 Gang’s Latest Arsenal |
Title | Hadooken and K4Spreader: The 8220 Gang's Latest Arsenal |
Detected Hints/Tags/Attributes | 88/3/32 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 59 | ✔ | Sekoia.io Blog | https://blog.sekoia.io/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 81 | cve-2017-10271 |
|
Details | CVE | 27 | cve-2020-14883 |
|
Details | CVE | 84 | cve-2023-46604 |
|
Details | Domain | 4 | sck-dns.cc |
|
Details | Domain | 5 | c4k-ircd.pwndns.pw |
|
Details | Domain | 8 | pwn.oracleservice.top |
|
Details | Domain | 3 | play.sck-dns.cc |
|
Details | Domain | 2 | irc.bashgo.pw |
|
Details | Domain | 5 | run.on-demand.pw |
|
Details | Domain | 118 | sekoia.io |
|
Details | 18 | tdr@sekoia.io |
||
Details | File | 4 | 2.gif |
|
Details | File | 3 | m.xml |
|
Details | File | 3 | m1.xml |
|
Details | File | 7 | bin.ps1 |
|
Details | File | 1 | amsi_patch.ps1 |
|
Details | File | 8 | ccleaner64.exe |
|
Details | File | 3 | ueordwfkay.pdf |
|
Details | File | 5 | plugin3.dll |
|
Details | IPv4 | 2 | 77.221.151.174 |
|
Details | IPv4 | 6 | 154.213.192.44 |
|
Details | IPv4 | 3 | 51.222.111.116 |
|
Details | IPv4 | 6 | 80.78.24.30 |
|
Details | IPv4 | 3 | 77.221.149.212 |
|
Details | IPv4 | 8 | 51.255.171.23 |
|
Details | IPv4 | 1 | 3.2.10.6 |
|
Details | IPv4 | 3 | 198.199.85.230 |
|
Details | IPv4 | 3 | 64.227.170.227 |
|
Details | IPv4 | 3 | 157.230.29.135 |
|
Details | Url | 3 | http://154.213.192.44/ueordwfkay.pdf |
|
Details | Url | 3 | http://154.213.192.44/plugin3.dll |
|
Details | Url | 3 | http://sck-dns.cc/c |