Cycldek: Bridging the (air) gap
Common Information
Type Value
UUID cc242c8e-5b3f-42f0-9357-d59902358722
Fingerprint b61b1e2b8deb0483
Analysis status DONE
Considered CTI value 2
Text language
Published June 3, 2020, 10 a.m.
Added to db Sept. 11, 2022, 12:39 p.m.
Last updated Nov. 17, 2024, 6:49 p.m.
Headline Cycldek: Bridging the (air) gap
Title Cycldek: Bridging the (air) gap
Detected Hints/Tags/Attributes 106/3/142
Attributes
Details Type #Events CTI Value
Details CVE 176
cve-2012-0158
Details CVE 375
cve-2017-11882
Details CVE 117
cve-2018-0802
Details Domain 707
google.com
Details Domain 338
kaspersky.com
Details Domain 1
login.vietnamfar.com
Details Domain 1
news.trungtamwtoa.com
Details Domain 1
cophieu.dcsvnqvmn.com
Details Domain 1
mychau.dongnain.com
Details Domain 1
hcm.vietbaonam.com
Details Domain 1
nghiencuu.onetotechnologys.com
Details Domain 1
tinmoi.thoitietdulich.com
Details Domain 1
tinmoi.vieclamthemde.com
Details Domain 1
web.hcmuafgh.com
Details Domain 1
tintuc.daikynguyen21.com
Details Domain 1
web.laovoanew.com
Details Domain 1
cdn.laokpl.com
Details Domain 1
login.dangquanwatch.com
Details Domain 1
info.coreders.com
Details Domain 1
kinhte.chototem.com
Details Domain 1
login.thanhnienthegioi.com
Details Domain 1
luan.conglyan.com
Details Domain 1
toiyeuvn.dongaruou.com
Details Domain 1
web.laomoodwin.com
Details Domain 1
login.giaoxuchuson.com
Details Domain 1
lat.conglyan.com
Details Domain 1
thegioi.kinhtevanhoa.com
Details Domain 2
laovoanew.com
Details Domain 1
thanhnien.vietnannnet.com
Details Domain 1
login.diendanlichsu.com
Details Domain 1
khinhte.chinhsech.com
Details Domain 1
images.webprogobest.com
Details Domain 1
news.cooodkord.com
Details Domain 1
24h.tinthethaoi.com
Details Domain 1
quocphong.ministop14.com
Details Domain 1
nhantai.xmeyeugh.com
Details Domain 1
thoitiet.yrindovn.com
Details Domain 1
hanghoa.trenduang.com
Details Email 147
intelreports@kaspersky.com
Details File 15
wsc_proxy.exe
Details File 1
qcconcol.exe
Details File 6
qclite.dll
Details File 18
wsc.dll
Details File 4
dllhst3g.exe
Details File 1260
explorer.exe
Details File 212
winlogon.exe
Details File 9
%appdata%\desktop.ini
Details File 1
c:\documents and settings\all users\documents\desktop.ini
Details File 1
c:\documents and settings\all users\documents\desktopwow64.ini
Details File 5
search.jsp
Details File 1
rcores64.dat
Details File 5
qcconsol.exe
Details File 3
mcvsshld.exe
Details File 7
rc.exe
Details File 105
googleupdate.exe
Details File 104
sqlite3.dll
Details File 1
fuckcookies.txt
Details File 11
wrapper.exe
Details File 2
ptusersessionwrapper.exe
Details File 9
tmdbglog.dll
Details File 96
rar.exe
Details File 1
recyc1e.bin
Details File 88
1.txt
Details File 35
2.txt
Details File 6
chromepass.exe
Details File 28
goopdate.dll
Details File 1
silverlightmsi.dat
Details File 1
info.core
Details md5 1
A6C751D945CFE84C918E88DF04D85798
Details md5 1
4B785345161D288D1652C1B2D5CEADA1
Details md5 1
1B19175C41B9A9881B23B4382CC5935F
Details md5 1
6D2E6A61EEDE06FA9D633CE151208831
Details md5 1
6EA33305B5F0F703F569B9EBD6035BFD
Details md5 1
600E14E4B0035C6F0C6A344D87B6C27F
Details md5 1
1640EE7A414DFF996AF8265E0947DE36
Details md5 1
1EA07468EBDFD3D9EEC59AC57A490701
Details md5 1
07EE1B99660C8CD5207E128F44AA8CBC
Details md5 1
809196A64CA4A32860D28760267A1A8B
Details md5 1
81660985276CF9B6D979753B6E581D34
Details md5 1
A44804C2767DCCD4902AAE30C36E62C0
Details md5 1
A9BCF983FE868A275F8D9D8F5DEFACF5
Details md5 1
C73B000313DCD2289F51B367F744DCD8
Details md5 1
2FB731903BD12FF61E6F778FDF9926EE
Details md5 1
4A21F9B508DB19398AEE7FE4AE0AC380
Details md5 1
6BE1362D722BA4224979DE91A2CD6242
Details md5 1
7789055B0836A905D9AA68B1D4A50F09
Details md5 1
782FF651F34C87448E4503B5444B6164
Details md5 1
88CDD3CE6E5BAA49DC69DA664EDEE5C1
Details md5 1
A4AD564F8FE80E2EE52E643E449C487D
Details md5 1
3CA7BD71B30007FC30717290BB437152
Details md5 1
58FE8DB0F7AE505346F6E4687D0AE233
Details md5 1
A02E2796E0BE9D84EE0D4B205673EC20
Details md5 1
D8DB9D6585D558BA2D28C33C6FC61874
Details md5 1
2E522CE8104C0693288C997604AE0096
Details md5 1
7FF0AF890B00DEACBF42B025DDEE8402
Details IPv4 1
103.253.25.73
Details Url 1
http://login.vietnamfar.com:8080
Details Url 1
http://news.trungtamwtoa.com:88
Details Url 1
http://cophieu.dcsvnqvmn.com:8080
Details Url 1
http://mychau.dongnain.com:443
Details Url 1
http://hcm.vietbaonam.com:443
Details Url 1
http://nghiencuu.onetotechnologys.com:8080
Details Url 1
http://tinmoi.thoitietdulich.com:53
Details Url 1
http://tinmoi.vieclamthemde.com:53
Details Url 1
http://tinmoi.vieclamthemde.com
Details Url 1
http://web.hcmuafgh.com
Details Url 1
http://tintuc.daikynguyen21.com
Details Url 1
http://web.laovoanew.com:443
Details Url 1
http://cdn.laokpl.com:8080
Details Url 1
http://login.dangquanwatch.com:53
Details Url 1
http://info.coreders.com:8080
Details Url 1
http://web.laovoanew.com
Details Url 1
http://kinhte.chototem.com
Details Url 1
http://news.trungtamwtoa.com
Details Url 1
http://mychau.dongnain.com
Details Url 1
http://hcm.vietbaonam.com
Details Url 1
http://login.thanhnienthegioi.com
Details Url 1
http://103.253.25.73
Details Url 1
http://luan.conglyan.com
Details Url 1
http://toiyeuvn.dongaruou.com
Details Url 1
http://web.laomoodwin.com
Details Url 1
http://login.giaoxuchuson.com
Details Url 1
http://lat.conglyan.com
Details Url 1
http://thegioi.kinhtevanhoa.com
Details Url 1
http://laovoanew.com
Details Url 1
http://cdn.laokpl.com
Details Url 1
http://login.dangquanwatch.com
Details Url 1
http://info.coreders.com
Details Url 1
http://thanhnien.vietnannnet.com
Details Url 1
http://login.diendanlichsu.com
Details Url 1
http://login.vietnamfar.com
Details Url 1
http://cophieu.dcsvnqvmn.com
Details Url 1
http://nghiencuu.onetotechnologys.com
Details Url 1
http://tinmoi.thoitietdulich.com
Details Url 1
http://khinhte.chinhsech.com
Details Url 1
http://images.webprogobest.com
Details Url 1
http://news.cooodkord.com
Details Url 1
http://24h.tinthethaoi.com
Details Url 1
http://quocphong.ministop14.com
Details Url 1
http://nhantai.xmeyeugh.com
Details Url 1
http://thoitiet.yrindovn.com
Details Url 1
http://hanghoa.trenduang.com