Rewterz Threat Alert –Raccoon Infostealer – Active IOCs - Rewterz
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Credentials - T1589.001 Hardware - T1592.001 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Server - T1583.004 Server - T1584.004 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | d31de68c-499f-4a10-a33d-9290414ac0ec |
Fingerprint | 9fb62869868f8b07 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Aug. 16, 2021, 10:49 a.m. |
Added to db | Dec. 19, 2024, 7:55 a.m. |
Last updated | Dec. 19, 2024, 8:30 p.m. |
Headline | Rewterz Threat Alert –Raccoon Infostealer – Active IOCs |
Title | Rewterz Threat Alert –Raccoon Infostealer – Active IOCs - Rewterz |
Detected Hints/Tags/Attributes | 28/2/21 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 34 | log.zip |
|
Details | Domain | 3 | crackdev.com |
|
Details | File | 34 | log.zip |
|
Details | md5 | 2 | 5738baaeadf55a042f16214d58081edd |
|
Details | md5 | 2 | df538a2c851b5b82e1b4d07bc6d56127 |
|
Details | md5 | 2 | 908fa1446bc3cc61c7f05e0f56067705 |
|
Details | md5 | 2 | 1130cbf154f02b2ea574c8e7c99c6424 |
|
Details | md5 | 1 | dc3688fa0caa86c31c983d5d531b0b85 |
|
Details | sha1 | 2 | 66ff370fdcd65a3d51b7e7de676071a93db5e62d |
|
Details | sha1 | 2 | de51452f0f9ada0f860d3f6acd5018dc3cda7a30 |
|
Details | sha1 | 2 | 195948e4b235aa486ffe4f3c22fa5bcea4bb8ea4 |
|
Details | sha1 | 2 | b2c1f276acff21f0e89f65a46f1ae6280e0004a6 |
|
Details | sha1 | 1 | d5ee18441cd152a649298761d3955810f610767f |
|
Details | sha256 | 2 | d1f114be8bca0a0ba4a77c505872422ea8eaa94ca640e959bfe05888cc4d50cb |
|
Details | sha256 | 2 | 9769bb939dbd1d953078082ee9748409ebfa38bbb257ba698e0761e66e21ce5e |
|
Details | sha256 | 2 | b2ff33ba5fb21b6ac2d560930be90451eb2197b75c781d162bf321149fe1323f |
|
Details | sha256 | 2 | e3be403909d1cee855913c0b6a5f40cd48baac3211588098ae53cc2579063448 |
|
Details | sha256 | 1 | 1780d48983335a99ff7054cae2740df7b87e3412d46e99e6a1160769946ff2f8 |
|
Details | IPv4 | 2 | 94.130.227.45 |
|
Details | Url | 3 | https://crackdev.com/windows-10-activator-full-product-key |
|
Details | Url | 2 | http://94.130.227.45/x.rar |