Spear Phishing Fileless Attack with CVE-2017-0199
Tags
attack-pattern: | Data Exploits - T1587.004 Exploits - T1588.005 Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 |
Common Information
Type | Value |
---|---|
UUID | a4046738-6347-4a53-ab6f-44853b3db078 |
Fingerprint | ac0509dae00b0a2f |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | May 30, 2017, midnight |
Added to db | Feb. 17, 2023, 10:37 p.m. |
Last updated | Nov. 15, 2024, 1:37 p.m. |
Headline | Spear Phishing Fileless Attack with CVE-2017-0199 |
Title | Spear Phishing Fileless Attack with CVE-2017-0199 |
Detected Hints/Tags/Attributes | 26/1/9 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 269 | cve-2017-0199 |
|
Details | md5 | 1 | d4ff8e87f66150e36e4f70c65f422524 |
|
Details | md5 | 1 | c4505c6a6b148c3d7b5f4d756f49dbdf |
|
Details | md5 | 1 | 2c085826d56eb39570d0d76e34d52052 |
|
Details | sha256 | 2 | 2a918030be965cd5f365eb28cd5a0bebec32d05c6a27333ade3beaf3c54d242c |
|
Details | sha256 | 4 | 39ac90410bd78f541eb42b1108d2264c7bd7a5feafe102cd7ac8f517c1bd3754 |
|
Details | sha256 | 2 | 326a01a5e2eeeeebe3dade94cf0f7298f259b72e93bd1739505e14df3e7ac21e |
|
Details | Url | 1 | http://5{removed}.161/wstat/?id=77778888&act=1 |
|
Details | Url | 1 | https://176.{removed}.134/mauy |