StrelaStealer
Tags
country: | Spain |
attack-pattern: | Data Credentials - T1589.001 Domains - T1583.001 Domains - T1584.001 Malware - T1587.001 Malware - T1588.001 Server - T1583.004 Server - T1584.004 |
Common Information
Type | Value |
---|---|
UUID | f3ad7fde-8616-4f52-8b95-254bc77b2fab |
Fingerprint | 2c26351badda62d9 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | May 7, 2023, midnight |
Added to db | June 5, 2023, 11:35 a.m. |
Last updated | Nov. 17, 2024, 5:57 p.m. |
Headline | StrelaStealer |
Title | StrelaStealer |
Detected Hints/Tags/Attributes | 28/2/34 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 207 | ✔ | OALABS Research | https://research.openanalysis.net/feed.xml | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1373 | twitter.com |
|
Details | Domain | 2 | idc.here |
|
Details | Domain | 1 | carrefours-tw.com |
|
Details | Domain | 1 | directeredie.org |
|
Details | Domain | 1 | dkpostnord.com |
|
Details | Domain | 1 | fornying-skonto.com |
|
Details | Domain | 1 | redisimple.com |
|
Details | Domain | 1 | chunghwa-post.app |
|
Details | Domain | 1 | atuh-manor.com |
|
Details | Domain | 1 | post-chunghwa-tw.app |
|
Details | Domain | 1 | post-chunghwa-tw.com |
|
Details | Domain | 1 | tibouton.org |
|
Details | Domain | 1 | carrefour-tw.com |
|
Details | Domain | 1 | post-tw.app |
|
Details | File | 24 | server.php |
|
Details | File | 5 | x.pdf |
|
Details | File | 55 | putty.exe |
|
Details | File | 1 | c:\\users\\serhii\\downloads\\putty.exe |
|
Details | sha256 | 1 | be9f84b19f02f16b7d8a9148a68ad8728cc169668f2c59f918d019bce400d90e |
|
Details | sha256 | 1 | 8b0d8651e035fcc91c39b3260c871342d1652c97b37c86f07a561828b652e907 |
|
Details | sha256 | 1 | 3b3f2a92db0f19e96ba8a729709e357419e1aba1ccd48244f34fb74cc621ed51 |
|
Details | sha256 | 1 | 61118d0f778c2f9b3a2bb3e37176ba6a13ee266c49b89dab7e187129f5c00887 |
|
Details | sha256 | 1 | fbcfed6900eadd7d36a169400bfcc65a56778cf51152fa8cea0b74daa6cbcd60 |
|
Details | sha256 | 1 | d091cb30b4c19b24249af2648d8c43abd5390118d502b5041b5d89d2152a0d7a |
|
Details | sha256 | 1 | 2f3a2b18252e39c5b95a199412d97916e6e2611f3a83ef7160e74aa959a41933 |
|
Details | IPv4 | 1 | 193.106.191.166 |
|
Details | IPv4 | 3 | 91.215.85.209 |
|
Details | Pdb | 1 | c:\users\serhii\documents\visual studio 2008\projects\streladllcompile\release\streladllcompile.pdb |
|
Details | Pdb | 1 | c:\users\admin\source\repos\dll1\release\dll1.pdb |
|
Details | Pdb | 1 | c:\users\serhii\documents\visual studio 2008\projects\dll1\release\dll1.pdb |
|
Details | Pdb | 1 | c:\users\serhii\source\repos\windowsproject1\x64\release\windowsproject1.pdb |
|
Details | Url | 1 | https://twitter.com/seanmw/status/1654504780339859456?s=20 |
|
Details | Url | 1 | http://193.106.191.166/server.php |
|
Details | Url | 3 | http://91.215.85.209/server.php |