Rewterz Threat Alert – KONNI APT Group – Active IOCs - Rewterz
Tags
country: | Russia |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 |
Common Information
Type | Value |
---|---|
UUID | db031fda-bc43-4ee7-a123-7c951de1a61e |
Fingerprint | a39a8dcb0fc5caea |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 14, 2022, 1:02 p.m. |
Added to db | Dec. 19, 2024, 1 a.m. |
Last updated | Dec. 19, 2024, 8:42 a.m. |
Headline | Rewterz Threat Alert – KONNI APT Group – Active IOCs |
Title | Rewterz Threat Alert – KONNI APT Group – Active IOCs - Rewterz |
Detected Hints/Tags/Attributes | 37/3/7 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 4 | rq7592.c1.biz |
|
Details | File | 4 | 보상명부.xlam |
|
Details | md5 | 1 | f2ffb3cb75535e4ef70b195de68fd330 |
|
Details | sha1 | 1 | f8a0ba3e66492293d8dccb095b4bd4bde5d36aa6 |
|
Details | sha256 | 1 | 158f5228225d9337083c323b45a63e70297ed9c8ecb8517dc1d8cb64f29acf5d |
|
Details | IPv4 | 5 | 185.176.43.106 |
|
Details | Url | 3 | http://rq7592.c1.biz/dn.php?name=065367&prefix=cc |