Silence – a new Trojan attacking financial organizations
Tags
country: | Armenia Malaysia Russia |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Javascript - T1059.007 Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 Software - T1592.002 Windows Service - T1543.003 Tool - T1588.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 9e2f10b0-2d00-4c1f-a085-069cd4ea4668 |
Fingerprint | 90270dda8d25a687 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Nov. 1, 2017, 11:26 a.m. |
Added to db | Sept. 26, 2022, 9:31 a.m. |
Last updated | Nov. 17, 2024, 10:40 p.m. |
Headline | Silence – a new Trojan attacking financial organizations |
Title | Silence – a new Trojan attacking financial organizations |
Detected Hints/Tags/Attributes | 68/3/22 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://securelist.com/the-silence/83009/ |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 338 | kaspersky.com |
|
Details | 147 | intelreports@kaspersky.com |
||
Details | File | 4 | start.htm |
|
Details | File | 3 | mss.exe |
|
Details | File | 2126 | cmd.exe |
|
Details | File | 4 | winexesvc.exe |
|
Details | File | 22 | trojan-downloader.js |
|
Details | md5 | 3 | dde658eb388512ee9f4f31f0f027a7df |
|
Details | md5 | 2 | 404D69C8B74D375522B9AFE90072A1F4 |
|
Details | md5 | 3 | 242b471bae5ef9b4de8019781e553b85 |
|
Details | md5 | 1 | 6A246FA30BC8CD092DE3806AE3D7FC49 |
|
Details | md5 | 1 | 0B67E662D2FD348B5360ECAC6943D69C |
|
Details | md5 | 1 | Dde658eb388512ee9f4f31f0f027a7df |
|
Details | md5 | 3 | 404d69c8b74d375522b9afe90072a1f4 |
|
Details | md5 | 1 | 15e1f3ce379c620df129b572e76e273f |
|
Details | md5 | 1 | D2c7589d9f9ec7a01c10e79362dd400c |
|
Details | md5 | 1 | 1b17531e00cfc7851d9d1400b9db7323 |
|
Details | md5 | 1 | 324D52A4175722A7850D8D44B559F98D |
|
Details | md5 | 1 | 6a246fa30bc8cd092de3806ae3d7fc49 |
|
Details | md5 | 1 | B43f65492f2f374c86998bd8ed39bfdd |
|
Details | md5 | 3 | cfffc5a0e5bdc87ab11b75ec8a6715a4 |
|
Details | IPv4 | 1 | 185.161.209.81 |