InfoSec Handlers Diary Blog - SANS Internet Storm Center
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Javascript - T1059.007 Powershell - T1059.001 Powershell - T1086 |
Common Information
Type | Value |
---|---|
UUID | e1a1af88-1498-4a9e-afa6-0b46ddec0162 |
Fingerprint | 1c19ae220594a2e7 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Nov. 4, 2022, midnight |
Added to db | Jan. 16, 2023, 3:51 p.m. |
Last updated | Nov. 18, 2024, 9:32 a.m. |
Headline | Internet Storm Center |
Title | InfoSec Handlers Diary Blog - SANS Internet Storm Center |
Detected Hints/Tags/Attributes | 18/2/13 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://isc.sans.edu/diary/rss/29220 |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 75 | tinyurl.com |
|
Details | Domain | 1 | defenderos2.con-ip.com |
|
Details | Domain | 208 | learn.microsoft.com |
|
Details | File | 2 | fiscalia.rar |
|
Details | File | 1210 | powershell.exe |
|
Details | File | 1 | c:\users\user01\appdata\local\temp\unidad judicial cita.vbs |
|
Details | sha256 | 2 | 49562fda46cfa05b2a6e2cb06a5d25711c9a435b578a7ec375f928aae9c08ff2 |
|
Details | sha256 | 1 | ee1e6615088a95b6d401603fc0f46b105a453eecbd8131305443983b6d32151f |
|
Details | Url | 2 | https://tinyurl.com/2erph6cs'));[system.appdomain]::currentdomain.load($dll).gettype('nwgoxm.kpjanj').getmethod('pulgka').invoke |
|
Details | Url | 2 | https://tinyurl.com/2erph6cs |
|
Details | Url | 1 | https://www.virustotal.com/gui/file/49562fda46cfa05b2a6e2cb06a5d25711c9a435b578a7ec375f928aae9c08ff2/details |
|
Details | Url | 1 | https://learn.microsoft.com/en-us/dotnet/api/system.appdomain.load?view=net-6.0 |
|
Details | Url | 1 | https://www.virustotal.com/gui/file/ee1e6615088a95b6d401603fc0f46b105a453eecbd8131305443983b6d32151f |