Ransomware Cerber v6.x - Delivery and Detection
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Domains - T1583.001 Domains - T1584.001 Malvertising - T1583.008 Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | ca05b040-85a1-4154-9caa-e021d42d5dac |
Fingerprint | 272360790ab6ae1d |
Analysis status | DONE |
Considered CTI value | 1 |
Text language | |
Published | June 19, 2017, 3:12 p.m. |
Added to db | Jan. 18, 2023, 9:23 p.m. |
Last updated | Nov. 17, 2024, 5:57 p.m. |
Headline | NetWitness Community |
Title | Ransomware Cerber v6.x - Delivery and Detection |
Detected Hints/Tags/Attributes | 51/2/14 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 20 | alias.host |
|
Details | Domain | 19 | community.rsa.com |
|
Details | Domain | 8 | blogs.rsa.com |
|
Details | Domain | 47 | www.malware-traffic-analysis.net |
|
Details | Domain | 1 | ransomwares.net |
|
Details | Threat Actor Identifier - APT | 297 | APT27 |
|
Details | Url | 3 | https://community.rsa.com/community/products/netwitness/blog/2016/09/27/the-evolution-of-cerber |
|
Details | Url | 2 | https://community.rsa.com/community/products/netwitness/blog/2016/11/04/the-evolution-of-cerber-v410 |
|
Details | Url | 2 | https://community.rsa.com/community/products/netwitness/blog/2016/11/23/looking-behind-the-curtain-how-rsa-netwitness-packets-and-endpoint-see-a-cerber-ransomware-compromise |
|
Details | Url | 2 | https://community.rsa.com/community/products/netwitness/blog/2017/02/09/cerber-all-day-everyday |
|
Details | Url | 1 | https://community.rsa.com/community/products/netwitness/blog/2017/06/16/blank-slate-delivers-cerber-6-15-2017 |
|
Details | Url | 1 | https://blogs.rsa.com/blank-slate |
|
Details | Url | 2 | http://www.malware-traffic-analysis.net |
|
Details | Url | 1 | http://ransomwares.net/cerber-6-ransomware |