Rewterz Threat Alert – AZORult – IOCs - Rewterz
Tags
attack-pattern: | Data Credentials - T1589.001 Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 Vulnerabilities - T1588.006 Scripting - T1064 Scripting |
Common Information
Type | Value |
---|---|
UUID | c4454dcb-ab88-4599-9f09-c7d5856d8b43 |
Fingerprint | 81f438506eef071f |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | June 1, 2020, 9:15 a.m. |
Added to db | Dec. 19, 2024, 8:05 a.m. |
Last updated | Dec. 19, 2024, 9:14 a.m. |
Headline | Rewterz Threat Alert – AZORult – IOCs |
Title | Rewterz Threat Alert – AZORult – IOCs - Rewterz |
Detected Hints/Tags/Attributes | 19/1/14 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://www.rewterz.com/rewterz-news/rewterz-threat-alert-azorult-iocs |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 3 | cve-2020-4306 |
|
Details | Domain | 1 | polosatik.site |
|
Details | Domain | 1 | ffvgdsv.ug |
|
Details | Domain | 1 | tenntechs.com |
|
Details | Domain | 1 | ffacscs.ug |
|
Details | Domain | 7 | libs.zip |
|
Details | IPv4 | 1 | 34.107.4.68 |
|
Details | Url | 1 | http://polosatik.site/612.exe |
|
Details | Url | 1 | http://ffvgdsv.ug/az2.exe |
|
Details | Url | 1 | https://tenntechs.com/apps/index.php |
|
Details | Url | 1 | http://ffacscs.ug/nw.exe |
|
Details | Url | 1 | http://34.107.4.68/gate/sqlite3.dll |
|
Details | Url | 1 | http://34.107.4.68 |
|
Details | Url | 1 | http://34.107.4.68/gate/libs.zip |