Rewterz Threat Advisory – Cobalt Bank Robbers Use New ThreadKit Malicious Doc Builder - Rewterz
Common Information
Type Value
UUID 968c117d-6194-43e7-8ba7-505abaca2c21
Fingerprint a050a4527d89ff07
Analysis status DONE
Considered CTI value 2
Text language
Published Dec. 14, 2018, 3:12 p.m.
Added to db Dec. 19, 2024, 9:57 a.m.
Last updated Dec. 20, 2024, 12:02 a.m.
Headline Rewterz Threat Advisory – Cobalt Bank Robbers Use New ThreadKit Malicious Doc Builder
Title Rewterz Threat Advisory – Cobalt Bank Robbers Use New ThreadKit Malicious Doc Builder - Rewterz
Detected Hints/Tags/Attributes 33/2/28
Attributes
Details Type #Events CTI Value
Details CVE 115
cve-2018-8174
Details Domain 2
visa-fraud-monitoring.com
Details Domain 2
webmail.microsoft.org.kz
Details Domain 2
servicecentrum.info
Details Domain 2
compass.plus
Details Domain 2
eucentalbank.com
Details Domain 2
europecentalbank.com
Details Domain 2
unibank.credit
Details Domain 87
rewterz.com
Details Email 54
soc@rewterz.com
Details sha256 2
2b4760b5bbe982a7e26af4ee618f8f2dcc67dfe0211f852bf549db457acd262c
Details sha256 2
e9ab3195f3a974861aa1135862f6c24df1d7f5820e8c2ac6e61a1a5096457fc3
Details sha256 2
0dedb345d90dbba7e83b2d618c93d701ed9e9037aa3b7c7c58b62e53dab7d2ce
Details sha256 2
eb4325ef1cbfba85b35eec3204e7f79e4703bb706d5431a914b13288dcf1d598
Details sha256 4
a0292cc74ef005b2e5e0889d1fc1711f07688b93b16ebc3174895d7752a16a23
Details sha256 2
94155a2940a1d49a92a602a5232f156eeb1d35018847edb9c6002cefe4c49f94
Details sha256 4
ccb1fa5cdbc402b912b01a1838c1f13e95e9392b3ab6cc5f28277c012b0759f9
Details sha256 2
0f5c5d07ed0508875330a0cb89ba3f88c58f92d5b1536d20190df1e00ebd3d91
Details sha256 2
9d9d1c246ba83a646dd9537d665344d6a611e7a279dcfe288a377840c31fe89c
Details sha256 2
e78e800bc259a46d51a866581dcdc7ad2d05da1fa38841a5ba534a43a8393ce9
Details IPv4 2
5.135.237.216
Details IPv4 2
86.106.131.207
Details Url 2
http://visa-fraud-monitoring.com/t.dll
Details Url 2
https://webmail.microsoft.org.kz/portal/readme.txt
Details Url 2
https://webmail.microsoft.org.kz/portal/ajax.php
Details Url 2
http://servicecentrum.info/test.xml
Details Url 2
https://5.135.237.216
Details Url 2
https://86.106.131.207