Rewterz Threat Advisory – SWIFT-themed Phishing Emails - Rewterz
Tags
country: | Albania Brazil Switzerland |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Credentials - T1589.001 Phishing - T1660 Phishing - T1566 Server - T1583.004 Server - T1584.004 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | d300512a-d25d-445e-8323-99eb748fe883 |
Fingerprint | 8fc1094bed519fcf |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | July 10, 2018, 2:28 p.m. |
Added to db | Dec. 19, 2024, 7:04 a.m. |
Last updated | Dec. 25, 2024, 7:25 a.m. |
Headline | Rewterz Threat Advisory – SWIFT-themed Phishing Emails |
Title | Rewterz Threat Advisory – SWIFT-themed Phishing Emails - Rewterz |
Detected Hints/Tags/Attributes | 20/3/21 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Autonomous System Number | 1 | AS27715 |
|
Details | Autonomous System Number | 1 | AS48971 |
|
Details | Autonomous System Number | 1 | AS197706 |
|
Details | CVE | 4 | cve-2018-5007 |
|
Details | CVE | 3 | cve-2018-5008 |
|
Details | Domain | 1 | irontech.ind.br |
|
Details | Domain | 1 | newlogs1.hopto.org |
|
Details | Domain | 1 | newlogs.ddnsgeek.com |
|
Details | Domain | 15 | t-online.de |
|
Details | Domain | 87 | rewterz.com |
|
Details | 1 | laux-prien@t-online.de |
||
Details | 32 | info@rewterz.com |
||
Details | File | 1 | 10_07_18_mt103_copy.zip |
|
Details | File | 1 | 10_07_18_mt103_copy.exe |
|
Details | md5 | 1 | 03ab4e91c30a55bd13a1a008401e72f7 |
|
Details | md5 | 1 | 4a629ccf87f24ac4720d890b1292da82 |
|
Details | sha1 | 1 | 3764911740702a30924990b0265c3eac53f1db82 |
|
Details | sha1 | 1 | 291ff2f443e03ccf0b44ae227110f69a62f68d22 |
|
Details | sha256 | 1 | efce38cf340ef2de620e025147c75de667f9f0d495b23c61c4d75bfe9e60ac45 |
|
Details | sha256 | 1 | 127663c557f11c8571b6c73cd58f673ab705bff8ab273bd087480f215eb09ea7 |
|
Details | Url | 1 | http://irontech.ind.br/10_07_18_mt103_copy.zip |