震惊!最新银狐恶意样本幕后黑手或为东南亚黑产团伙! | CTF导航
Tags
Common Information
Type | Value |
---|---|
UUID | d168a251-36bc-4d6f-83c0-5223e92fc9e5 |
Fingerprint | 489804fe5301e |
Analysis status | DONE |
Considered CTI value | -2 |
Text language | |
Published | Oct. 9, 2024, midnight |
Added to db | Oct. 22, 2024, 3 a.m. |
Last updated | Nov. 16, 2024, 12:27 a.m. |
Headline | 震惊!最新银狐恶意样本幕后黑手或为东南亚黑产团伙! |
Title | 震惊!最新银狐恶意样本幕后黑手或为东南亚黑产团伙! | CTF导航 |
Detected Hints/Tags/Attributes | 5/0/16 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://www.ctfiot.com/211134.html |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 426 | ✔ | CTF导航 | https://www.ctfiot.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 268 | www.virustotal.com |
|
Details | Domain | 1 | www.nfozzyf0.icu |
|
Details | File | 1 | 安装过程中调用setup.dll |
|
Details | File | 1 | 从资源点下载k3.bin |
|
Details | File | 1 | 文件并写入dfcga71dgg.log |
|
Details | File | 2 | k3.bin |
|
Details | File | 1 | 通过以上步骤对serverdll.dll |
|
Details | md5 | 1 | 6013ccd89a4b11d7d2ea16953f549585 |
|
Details | md5 | 1 | 35a8aece69cc432d192932fc90f04451 |
|
Details | md5 | 1 | 5fea854b91c7c8fa7cd5132970776965 |
|
Details | md5 | 1 | 84369a732feb2b0012484074183ae2ad |
|
Details | sha256 | 1 | 4bc82f64191cf907d7ecf7da5453258c9be60e5dbaff770ebc22d9629bcbc7e2 |
|
Details | sha256 | 1 | 45023fd0e694d66c284dfe17f78c624fd7e246a6c36860a0d892d232a30949be |
|
Details | IPv4 | 1 | 103.96.140.53 |
|
Details | Url | 1 | https://www.virustotal.com/graph/g5b02da5b1f1745d390956f6c622eb6aee69e8f2917be4d91b54669e77c3f8f45 |
|
Details | Url | 1 | https://www.nfozzyf0.icu/53/k3.bin?v919 |