StrifeWater RAT: Iranian APT Moses Staff Adds New Trojan to Ransomware Operations
Common Information
Type Value
UUID ddf2836f-c74d-49e4-ae33-556b3f0738bb
Fingerprint 97a319dbab270202
Analysis status DONE
Considered CTI value 0
Text language
Published Feb. 1, 2022, midnight
Added to db Sept. 11, 2022, 12:46 p.m.
Last updated Nov. 18, 2024, 1:38 a.m.
Headline StrifeWater RAT: Iranian APT Moses Staff Adds New Trojan to Ransomware Operations
Title StrifeWater RAT: Iranian APT Moses Staff Adds New Trojan to Ransomware Operations
Detected Hints/Tags/Attributes 90/2/10
Attributes
Details Type #Events CTI Value
Details Domain 2
techzenspace.com
Details File 312
calc.exe
Details File 1
c:\users\public\calc.exe
Details File 2127
cmd.exe
Details File 2
index8.php
Details File 4
index3.php
Details File 2
c:\users\public\libraries\async.dat
Details File 1
async.dat
Details IPv4 2
87.120.8.210
Details Pdb 1
c:\users\win8\desktop\ishdar_win8\1\x64\release\brokerhost.pdb