CryptConsole-2
Tags
country: | India |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | d5740ebd-b7d2-41a1-b77f-2c6a775d1a89 |
Fingerprint | b235195f40183bba |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Feb. 21, 2017, 11:10 a.m. |
Added to db | Sept. 26, 2022, 9:32 a.m. |
Last updated | Nov. 12, 2024, 11:47 a.m. |
Headline | Шифровальщики-вымогатели The Digest "Crypto-Ransomware" |
Title | CryptConsole-2 |
Detected Hints/Tags/Attributes | 30/3/29 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 15 | malware.ai |
|
Details | Domain | 162 | localbitcoins.com |
|
Details | Domain | 42 | www.coinbase.com |
|
Details | Domain | 6 | xchange.cc |
|
Details | Domain | 99 | india.com |
|
Details | Domain | 3 | mail.india.com |
|
Details | Domain | 167 | tutanota.com |
|
Details | Domain | 83 | tuta.io |
|
Details | 4 | something_ne@india.com |
||
Details | 1 | tosomething_ne@india.com |
||
Details | 1 | someone_ne@india.com |
||
Details | 1 | lacky@india.com |
||
Details | 1 | trulolo@india.com |
||
Details | 1 | bit-tray@tutanota.com |
||
Details | 3 | qar48@tutanota.com |
||
Details | 1 | zer90@tutanota.com |
||
Details | 2 | sequre@tuta.io |
||
Details | 3 | xzet@tutanota.com |
||
Details | File | 3 | dropper.msi |
|
Details | File | 4 | heur.msi |
|
Details | File | 15 | malware.ai |
|
Details | File | 3 | setup.ini |
|
Details | File | 3 | smsss.exe |
|
Details | File | 6 | keys.txt |
|
Details | File | 1 | com_736d7373732e657865.exe |
|
Details | File | 8 | decrypt.exe |
|
Details | Url | 33 | https://localbitcoins.com |
|
Details | Url | 21 | https://www.coinbase.com |
|
Details | Url | 4 | https://xchange.cc |