EquationGroup Tool Leak - ExtraBacon Demo
Tags
attack-pattern: | Data Credentials - T1589.001 Exploits - T1587.004 Exploits - T1588.005 Python - T1059.006 Ssh - T1021.004 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | f17b7932-1b7f-47e9-9503-1d83a0f65cfb |
Fingerprint | a5822d15acba35d9 |
Analysis status | DONE |
Considered CTI value | 1 |
Text language | |
Published | Aug. 16, 2016, 9:10 p.m. |
Added to db | Jan. 19, 2023, 12:04 a.m. |
Last updated | Nov. 4, 2024, 2:20 a.m. |
Headline | EquationGroup Tool Leak - ExtraBacon Demo |
Title | EquationGroup Tool Leak - ExtraBacon Demo |
Detected Hints/Tags/Attributes | 27/1/41 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://xor.cat/2016/08/16/equationgroup-tool-leak-extrabacon-demo/ |
URL Provider
Details | Provider | Source level domain |
---|---|---|
Details | xor.cat | xor.cat |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | File | 2 | eqgrp-free-file.tar |
|
Details | File | 3 | eqgrp-auction-file.tar |
|
Details | File | 7 | 1.py |
|
Details | sha256 | 1 | cf840f3d9bfb72eccf950ef5f91a01124b3e15cbf6f65373a90b856388abf666 |
|
Details | IPv4 | 13 | 1.1.0.1 |
|
Details | IPv4 | 1 | 10.1.1.250 |
|
Details | IPv4 | 56 | 1.3.6.1 |
|
Details | IPv4 | 11 | 2.1.1.1 |
|
Details | IPv4 | 2 | 2.1.1.3 |
|
Details | IPv4 | 2 | 2.1.1.5 |
|
Details | IPv4 | 3 | 4.1.9.9 |
|
Details | IPv4 | 2 | 91.1.3.3 |
|
Details | IPv4 | 3 | 1.1.5.9 |
|
Details | IPv4 | 1 | 95.184.67.123 |
|
Details | IPv4 | 1 | 122.173.53.165 |
|
Details | IPv4 | 1 | 165.165.165.131 |
|
Details | IPv4 | 1 | 236.4.137.4 |
|
Details | IPv4 | 1 | 36.137.229.131 |
|
Details | IPv4 | 1 | 197.72.49.192 |
|
Details | IPv4 | 1 | 49.219.179.16 |
|
Details | IPv4 | 1 | 49.246.191.174 |
|
Details | IPv4 | 1 | 170.170.170.129 |
|
Details | IPv4 | 1 | 247.165.165.165 |
|
Details | IPv4 | 1 | 165.96.139.132 |
|
Details | IPv4 | 1 | 36.224.1.0 |
|
Details | IPv4 | 1 | 0.4.53.255 |
|
Details | IPv4 | 1 | 208.97.195.144 |
|
Details | IPv4 | 2 | 144.144.144.144 |
|
Details | IPv4 | 1 | 144.144.144.25 |
|
Details | IPv4 | 1 | 71.20.9.139 |
|
Details | IPv4 | 1 | 124.36.20.139 |
|
Details | IPv4 | 1 | 7.255.224.144 |
|
Details | IPv4 | 1 | 4.1.99.12 |
|
Details | IPv4 | 1 | 36.1.1.1 |
|
Details | IPv4 | 1 | 116.114.97.112 |
|
Details | IPv4 | 1 | 104.111.115.116 |
|
Details | IPv4 | 1 | 46.112.117.98 |
|
Details | IPv4 | 1 | 83.116.114.105 |
|
Details | IPv4 | 1 | 110.103.46.49 |
|
Details | IPv4 | 1 | 48.46.49.46 |
|
Details | IPv4 | 1 | 49.46.51.46 |