震惊!最新银狐恶意样本幕后黑手或为东南亚黑产团伙! | CTF导航
Tags
Common Information
Type Value
UUID d168a251-36bc-4d6f-83c0-5223e92fc9e5
Fingerprint 489804fe5301e
Analysis status DONE
Considered CTI value -2
Text language
Published Oct. 9, 2024, midnight
Added to db Oct. 22, 2024, 3 a.m.
Last updated Nov. 16, 2024, 12:27 a.m.
Headline 震惊!最新银狐恶意样本幕后黑手或为东南亚黑产团伙!
Title 震惊!最新银狐恶意样本幕后黑手或为东南亚黑产团伙! | CTF导航
Detected Hints/Tags/Attributes 5/0/16
Source URLs
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 426 CTF导航 https://www.ctfiot.com/feed 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 268
www.virustotal.com
Details Domain 1
www.nfozzyf0.icu
Details File 1
安装过程中调用setup.dll
Details File 1
从资源点下载k3.bin
Details File 1
文件并写入dfcga71dgg.log
Details File 2
k3.bin
Details File 1
通过以上步骤对serverdll.dll
Details md5 1
6013ccd89a4b11d7d2ea16953f549585
Details md5 1
35a8aece69cc432d192932fc90f04451
Details md5 1
5fea854b91c7c8fa7cd5132970776965
Details md5 1
84369a732feb2b0012484074183ae2ad
Details sha256 1
4bc82f64191cf907d7ecf7da5453258c9be60e5dbaff770ebc22d9629bcbc7e2
Details sha256 1
45023fd0e694d66c284dfe17f78c624fd7e246a6c36860a0d892d232a30949be
Details IPv4 1
103.96.140.53
Details Url 1
https://www.virustotal.com/graph/g5b02da5b1f1745d390956f6c622eb6aee69e8f2917be4d91b54669e77c3f8f45
Details Url 1
https://www.nfozzyf0.icu/53/k3.bin?v919