A pirated program downloaded from a torrent site infected hundreds of thousands of users
Tags
Common Information
Type | Value |
---|---|
UUID | e29fe811-20d6-4b69-9343-3a3c481c8454 |
Fingerprint | ada429536da32687 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Oct. 25, 2023, midnight |
Added to db | Nov. 20, 2023, 12:05 a.m. |
Last updated | Nov. 17, 2024, 6:56 p.m. |
Headline | A pirated program downloaded from a torrent site infected hundreds of thousands of users |
Title | A pirated program downloaded from a torrent site infected hundreds of thousands of users |
Detected Hints/Tags/Attributes | 159/4/94 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 355 | ✔ | ESC Threat Intelligence | https://www.ptsecurity.com/ww-en/rss/esc-threat/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 2 | topsoft.space |
|
Details | Domain | 2 | unsecapp.xyz |
|
Details | Domain | 2 | taskmgr.xyz |
|
Details | Domain | 2 | rundll.xyz |
|
Details | Domain | 4 | autoit-script.ru |
|
Details | Domain | 2 | idserver.xyz |
|
Details | Domain | 2 | wmiprvse.xyz |
|
Details | Domain | 2 | winhost.xyz |
|
Details | Domain | 2 | ftpsystem.xyz |
|
Details | Domain | 2 | gototopweb.xyz |
|
Details | Domain | 1 | write.thread.info |
|
Details | Domain | 1 | read.window.name |
|
Details | Domain | 1 | read.thread.info |
|
Details | Domain | 1 | read.process.info |
|
Details | Domain | 1 | create.process.servicecontrol.services |
|
Details | File | 38 | secret.txt |
|
Details | File | 3 | report.odt |
|
Details | File | 4 | report.rtf |
|
Details | File | 3 | incidents.pptx |
|
Details | File | 1 | c:\programdata\reaitekhd\taskhost.exe |
|
Details | File | 1 | c:\programdata\reaitekhd\taskhostw.exe |
|
Details | File | 1 | c:\windows\syswow64\unsecapp.exe |
|
Details | File | 1208 | powershell.exe |
|
Details | File | 1 | c:\programdata\windowstask\new.xml |
|
Details | File | 1 | c:\programdata\windows tasks service\winserv.exe |
|
Details | File | 1 | c:\program files\common files\system\iediagcmd.exe |
|
Details | File | 1 | c:\programdata\rdpwinst.exe |
|
Details | File | 1 | c:\programdata\windowstask\microsofthost.exe |
|
Details | File | 1 | c:\programdata\windowstask\appmodule.exe |
|
Details | File | 1 | c:\programdata\windowstask\audiodg.exe |
|
Details | File | 1 | c:\programdata\windowstask\amd.exe |
|
Details | File | 1 | c:\programdata\install\delete.bat |
|
Details | File | 40 | 7z.exe |
|
Details | File | 2 | scaner.dat |
|
Details | File | 1 | c:\programdata\rundll\sc.exe |
|
Details | File | 108 | 0.exe |
|
Details | File | 156 | 1.exe |
|
Details | File | 1 | c:\programdata\rundll\scupdate.exe |
|
Details | File | 42 | login.html |
|
Details | File | 2 | password.html |
|
Details | File | 2 | server.html |
|
Details | File | 4 | status.html |
|
Details | File | 1 | ltc.html |
|
Details | File | 1 | btc.html |
|
Details | File | 1 | btc2.html |
|
Details | File | 1 | btc3.html |
|
Details | File | 1 | eth.html |
|
Details | File | 1 | zec.html |
|
Details | File | 1 | doge.html |
|
Details | File | 1 | trx.html |
|
Details | File | 1 | bch.html |
|
Details | File | 37 | icacls.exe |
|
Details | File | 1 | write.reg |
|
Details | File | 1 | istry.key |
|
Details | File | 1 | thread.inf |
|
Details | File | 1 | read.reg |
|
Details | File | 1 | process.inf |
|
Details | md5 | 1 | bc216a5ae848fab1d2dbd8e7b5a91142 |
|
Details | IPv4 | 1 | 193.32.188.10 |
|
Details | MITRE ATT&CK Techniques | 183 | T1189 |
|
Details | MITRE ATT&CK Techniques | 365 | T1204.002 |
|
Details | MITRE ATT&CK Techniques | 275 | T1053.005 |
|
Details | MITRE ATT&CK Techniques | 380 | T1547.001 |
|
Details | MITRE ATT&CK Techniques | 20 | T1222.001 |
|
Details | MITRE ATT&CK Techniques | 298 | T1562.001 |
|
Details | MITRE ATT&CK Techniques | 504 | T1140 |
|
Details | MITRE ATT&CK Techniques | 57 | T1036.004 |
|
Details | MITRE ATT&CK Techniques | 550 | T1112 |
|
Details | MITRE ATT&CK Techniques | 160 | T1027.002 |
|
Details | MITRE ATT&CK Techniques | 297 | T1070.004 |
|
Details | MITRE ATT&CK Techniques | 585 | T1083 |
|
Details | MITRE ATT&CK Techniques | 433 | T1057 |
|
Details | MITRE ATT&CK Techniques | 230 | T1033 |
|
Details | MITRE ATT&CK Techniques | 97 | T1497.001 |
|
Details | MITRE ATT&CK Techniques | 116 | T1560.001 |
|
Details | MITRE ATT&CK Techniques | 534 | T1005 |
|
Details | MITRE ATT&CK Techniques | 442 | T1071.001 |
|
Details | MITRE ATT&CK Techniques | 141 | T1219 |
|
Details | MITRE ATT&CK Techniques | 126 | T1567 |
|
Details | Url | 1 | http://unsecapp.xyz/blue/login.html |
|
Details | Url | 1 | http://unsecapp.xyz/blue/password.html |
|
Details | Url | 1 | http://unsecapp.xyz/blue/server.html |
|
Details | Url | 1 | http://taskmgr.xyz/clipdata/status.html |
|
Details | Url | 1 | http://rundll.xyz/clipdata/status.html |
|
Details | Url | 1 | http://taskmgr.xyz/ltc.html |
|
Details | Url | 1 | http://taskmgr.xyz/btc.html |
|
Details | Url | 1 | http://taskmgr.xyz/btc2.html |
|
Details | Url | 1 | http://taskmgr.xyz/btc3.html |
|
Details | Url | 1 | http://taskmgr.xyz/eth.html |
|
Details | Url | 1 | http://taskmgr.xyz/zec.html |
|
Details | Url | 1 | http://taskmgr.xyz/doge.html |
|
Details | Url | 1 | http://taskmgr.xyz/trx.html |
|
Details | Url | 1 | http://taskmgr.xyz/bch.html |
|
Details | Windows Registry Key | 1 | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden |