Discovering Threat Actors and Malware
Common Information
Type Value
UUID afea8f18-cd6d-49e9-a1a2-c081128a3106
Fingerprint 8706191da93a06c3
Analysis status DONE
Considered CTI value 2
Text language
Published Dec. 6, 2024, 8:49 p.m.
Added to db Dec. 6, 2024, 9:57 p.m.
Last updated Dec. 26, 2024, 2:13 a.m.
Headline Discovering Threat Actors and Malware
Title Discovering Threat Actors and Malware
Detected Hints/Tags/Attributes 50/3/71
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 167 Cybersecurity on Medium https://medium.com/feed/tag/cybersecurity 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 202
readme.md
Details Domain 1
setupautorn.zip
Details Domain 1
cyberyoda.icu
Details Domain 79
tria.ge
Details Domain 1173
any.run
Details Domain 1
ikores.sbs
Details Domain 764
google.com
Details Domain 19
lencr.org
Details Domain 1
res.public.onecdn.static.microsoft
Details Domain 454
www.microsoft.com
Details Domain 4
ns.adobe.com
Details Domain 80
schemas.microsoft.com
Details Domain 39
schemas.openxmlformats.org
Details Domain 1
oneocsp.microsoft.com
Details Domain 167
www.w3.org
Details Domain 19
cacerts.digicert.com
Details Domain 7
crl3.digicert.com
Details Domain 6
crl4.digicert.com
Details Domain 18
www.digicert.com
Details File 1
application_setup_l.zip
Details File 1
setupautorn.zip
Details File 229
setup.exe
Details File 1
setupautorn.exe
Details File 1
lem.exe
Details md5 1
6de99ee6752927e6a33373893d2cfc05
Details md5 1
bf586bdf1219cc9e9d753db3e77887ee
Details md5 1
82ccd973e00420a4768bc76d2f442f52
Details md5 1
be41bf7b8cc010b614bd36bbca606973
Details sha256 1
080a5667b9dc8aa2362528f5e1dd5ddfcd5064301f995f52095c90def8748915
Details sha256 1
37919954152f36fb936ba48b6418c1172471ff9cc4627a7f3f941353e2c17b91
Details IPv4 14
149.154.167.99
Details IPv4 7
192.168.0.15
Details IPv4 4
20.99.185.48
Details IPv4 2
20.99.186.246
Details IPv4 1
23.192.210.9
Details IPv4 1
23.216.81.152
Details IPv4 1
23.55.62.81
Details IPv4 1
23.55.62.9
Details IPv4 1
45.130.41.93
Details IPv4 1
5.75.212.196
Details Url 3
http://ns.adobe.com/xap/1.0
Details Url 6
http://schemas.microsoft.com/winfx/2006/xaml
Details Url 1
http://schemas.microsoft.com/expression/blend/2008
Details Url 2
http://schemas.microsoft.com/smi/2005/windowssettings
Details Url 3
http://www.microsoft.com/pkiops/crl/microsoft
Details Url 1
http://schemas.openxmlformats.org/markup-compatibility/2006
Details Url 3
http://www.microsoft.com/pkiops/certs/microsoft
Details Url 1
http://ns.adobe.com/xap/1.0/stype/resourceref#
Details Url 1
http://oneocsp.microsoft.com/ocsp0
Details Url 6
http://schemas.microsoft.com/winfx/2006/xaml/presentation
Details Url 2
http://ns.adobe.com/xap/1.0/mm
Details Url 2
http://www.w3.org/1999/02/22-rdf-syntax-ns#
Details Url 2
http://www.microsoft.com/pkiops/docs/repository.htm0
Details Url 23
http://www.w3.org/2000/svg
Details Url 8
http://www.w3.org/1999/xlink
Details Url 1
http://oneocsp.microsoft.com/ocsp0f
Details Url 1
http://cacerts.digicert.com/digicerttrustedrootg4.crt0c
Details Url 1
http://crl3.digicert.com/digicerttrustedg4codesigningrsa4096sha3842021ca1.crl0sqom
Details Url 1
http://crl4.digicert.com/digicerttrustedg4codesigningrsa4096sha3842021ca1.crl0
Details Url 1
http://cacerts.digicert.com/digicertassuredidrootca.crt0e
Details Url 1
http://cacerts.digicert.com/digicerttrustedg4rsa4096sha256timestampingca.crt0
Details Url 1
http://line.naver.jp0
Details Url 1
http://crl3.digicert.com/digicertassuredidrootca.crl0
Details Url 1
http://crl3.digicert.com/digicerttrustedg4rsa4096sha256timestampingca.crl0
Details Url 2
http://www.digicert.com/cps0
Details Url 1
http://ocsp.digicert.com0c
Details Url 1
http://cacerts.digicert.com/digicerttrustedg4codesigningrsa4096sha3842021ca1.crt0
Details Url 1
http://ocsp.digicert.com0
Details Url 1
http://ocsp.digicert.com0a
Details Url 1
http://crl3.digicert.com/digicerttrustedrootg4.crl0
Details Url 1
http://ocsp.digicert.com0x