Rewterz Threat Alert – Nemucod Ransomware - Rewterz
Common Information
Type Value
UUID c594d581-3233-4277-b5c8-1cb923000a02
Fingerprint 845608f1ec1b9e49
Analysis status DONE
Considered CTI value 0
Text language
Published Sept. 29, 2020, 11:39 a.m.
Added to db Dec. 19, 2024, 11:01 a.m.
Last updated Dec. 20, 2024, 3:28 a.m.
Headline Rewterz Threat Alert – Nemucod Ransomware
Title Rewterz Threat Alert – Nemucod Ransomware - Rewterz
Detected Hints/Tags/Attributes 34/1/36
Attributes
Details Type #Events CTI Value
Details CVE 3
cve-2020-5930
Details Domain 3
tldrnet.top
Details Domain 1
universidadmahanaim.org
Details Domain 1
ujajajgogoff.com
Details Domain 1
eastexs.com
Details Domain 1
ohiyoungbuyff.com
Details Domain 1
tytone.com
Details Domain 1
shipservice-hr.market
Details Domain 1
ashihsijaediaehf.su
Details Domain 1
ohelloweuqq.com
Details Domain 1
booomaahuuoooapl.ru
Details Domain 1
plpanaifheaighai.su
Details Domain 1
aneoeauhiazegfiz.ru
Details Domain 1
uoaeogauhduadhug.ru
Details Domain 1
iuefgauiaiduihgs.ru
Details Domain 1
ashihsijaediaehf.in
Details Domain 2
tldrbox.top
Details Domain 1
a0391331.xsph.ru
Details Domain 1
wmi.4i7i.com
Details Domain 1
www.nze21.com
Details Domain 5
admindepartment.ir
Details Domain 2
irangoodshop.com
Details Domain 2
skuawill.com
Details Domain 1
www.362com.com
Details Domain 1
www.masionlex.info
Details File 33
decrypt.txt
Details Url 1
http://admindepartment.ir/templx/cripterfiletman.exe
Details Url 1
http://irangoodshop.com/aaa/fre.php
Details Url 1
http://admindepartment.ir/nwamax/nwamax.exe
Details Url 1
http://admindepartment.ir/wealthx/kayboi.exe
Details Url 2
http://admindepartment.ir/kenlaw/five/fre.php
Details Url 2
http://irangoodshop.com/biaa/fre.php
Details Url 1
http://skuawill.com/93.exe
Details Url 1
http://www.362com.com/update.txt
Details Url 1
http://www.literacyessentials.com/m30/?pfqp2bjp=
Details Url 1
http://www.masionlex.info/m30