Rewterz Threat Advisory – Cobalt Bank Robbers Use New ThreadKit Malicious Doc Builder - Rewterz
Tags
Common Information
Type | Value |
---|---|
UUID | 968c117d-6194-43e7-8ba7-505abaca2c21 |
Fingerprint | a050a4527d89ff07 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Dec. 14, 2018, 3:12 p.m. |
Added to db | Dec. 19, 2024, 9:57 a.m. |
Last updated | Dec. 20, 2024, 12:02 a.m. |
Headline | Rewterz Threat Advisory – Cobalt Bank Robbers Use New ThreadKit Malicious Doc Builder |
Title | Rewterz Threat Advisory – Cobalt Bank Robbers Use New ThreadKit Malicious Doc Builder - Rewterz |
Detected Hints/Tags/Attributes | 33/2/28 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 115 | cve-2018-8174 |
|
Details | Domain | 2 | visa-fraud-monitoring.com |
|
Details | Domain | 2 | webmail.microsoft.org.kz |
|
Details | Domain | 2 | servicecentrum.info |
|
Details | Domain | 2 | compass.plus |
|
Details | Domain | 2 | eucentalbank.com |
|
Details | Domain | 2 | europecentalbank.com |
|
Details | Domain | 2 | unibank.credit |
|
Details | Domain | 87 | rewterz.com |
|
Details | 54 | soc@rewterz.com |
||
Details | sha256 | 2 | 2b4760b5bbe982a7e26af4ee618f8f2dcc67dfe0211f852bf549db457acd262c |
|
Details | sha256 | 2 | e9ab3195f3a974861aa1135862f6c24df1d7f5820e8c2ac6e61a1a5096457fc3 |
|
Details | sha256 | 2 | 0dedb345d90dbba7e83b2d618c93d701ed9e9037aa3b7c7c58b62e53dab7d2ce |
|
Details | sha256 | 2 | eb4325ef1cbfba85b35eec3204e7f79e4703bb706d5431a914b13288dcf1d598 |
|
Details | sha256 | 4 | a0292cc74ef005b2e5e0889d1fc1711f07688b93b16ebc3174895d7752a16a23 |
|
Details | sha256 | 2 | 94155a2940a1d49a92a602a5232f156eeb1d35018847edb9c6002cefe4c49f94 |
|
Details | sha256 | 4 | ccb1fa5cdbc402b912b01a1838c1f13e95e9392b3ab6cc5f28277c012b0759f9 |
|
Details | sha256 | 2 | 0f5c5d07ed0508875330a0cb89ba3f88c58f92d5b1536d20190df1e00ebd3d91 |
|
Details | sha256 | 2 | 9d9d1c246ba83a646dd9537d665344d6a611e7a279dcfe288a377840c31fe89c |
|
Details | sha256 | 2 | e78e800bc259a46d51a866581dcdc7ad2d05da1fa38841a5ba534a43a8393ce9 |
|
Details | IPv4 | 2 | 5.135.237.216 |
|
Details | IPv4 | 2 | 86.106.131.207 |
|
Details | Url | 2 | http://visa-fraud-monitoring.com/t.dll |
|
Details | Url | 2 | https://webmail.microsoft.org.kz/portal/readme.txt |
|
Details | Url | 2 | https://webmail.microsoft.org.kz/portal/ajax.php |
|
Details | Url | 2 | http://servicecentrum.info/test.xml |
|
Details | Url | 2 | https://5.135.237.216 |
|
Details | Url | 2 | https://86.106.131.207 |