PULSE NAME
Winter Vivern summer campaign
WHITE Wintervivern AlienVault 2021-09-28 Modified: 2021-09-28
33
IOCs
MEDIUM VOLUME
In July, 2021, researchers found a currently active infection campaign attributed to a group referred as Wintervivern after a report published by the research team from DomainTools.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
SharpShooter
Indicators of Compromise (6 / 33 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 1e4ac5f0f8423676e87092552f5f595f MD5 of 2f52434696f98c9668a85f1af5dd4af2be729a7971f878ca9125731e27c63c50 2021-09-28
FileHash-MD5 4f5684ef53558b3e425aca2d17a28b9a MD5 of 0303936e7341b47b797b42b6911101d72a82f38faa263898c5993e7ee90107cc 2021-09-28
FileHash-MD5 6661ea544a541357ada6c32eb70cd96c MD5 of c34e98a31246f0903d4742dcf0a9890d5328ba8a1897fcf9cd803e104591ed5f 2021-09-28
FileHash-MD5 7940c343ae91e7198acf83400b25252f MD5 of 94f45ba55420961451afd1b70657375ec64b7697a515a37842478a5009694cfa 2021-09-28
FileHash-MD5 7a59366676daaa95cc71a0110ef75753 2021-09-28
FileHash-MD5 fdc4631008461df18e78fb653662f111 MD5 of 2a176721b35543d7f4d9e3d24a7c50e0ea57d7eaa251c6b24985d5266a6a977a 2021-09-28