PULSE NAME
Operation(loyalty) mercenary: a torrent of steel trapped in the plains of Eastern Europe
WHITE Conti AlienVault 2022-08-12 Modified: 2022-09-11
57
IOCs
HIGH VOLUME
Qi Anxin Threat Intelligence Center has been keeping a high-intensity track on Russian-speaking threat actors and active underground forums. Recently, we observed that the world-famous Conti Group used Exchange vulnerabilities to target venture capital companies, luxury goods companies, and chip manufacturing companies in the past six months. , foreign companies and joint ventures in the manufacturing industry launched targeted attacks, these attacked companies have a common feature: "rich".
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Conti HackTool:Win64/CobaltStrike
Indicators of Compromise (20 / 57 total)
All domain FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 02953d5f6363896427d09fa112f5da16 2022-08-12
FileHash-MD5 0838b1a1618c5ea3137ece85f83686c0 2022-08-12
FileHash-MD5 09078828931a04c2a3f95db7641ce805 2022-08-12
FileHash-MD5 264f7b719ce8bc281377582a24eaac69 2022-08-12
FileHash-MD5 28dc8674d8d692ed156998520a5e6303 2022-08-12
FileHash-MD5 35861f4ea9a8ecb6c357bdb91b7df804 2022-08-12
FileHash-MD5 36e91497fee355a45a5cb23a5ea91139 2022-08-12
FileHash-MD5 44bd492dfb54107ebfe063fcbfbddff5 2022-08-12
FileHash-MD5 480d33334909d49d61cb75c536aef1f7 2022-08-12
FileHash-MD5 4b27c3d57fe01a2a5b2001854507e0e2 2022-08-12
FileHash-MD5 6121393a37c3178e7c82d1906ea16fd4 2022-08-12
FileHash-MD5 72c84779b5862c1462ca0c3da30bde39 2022-08-12
FileHash-MD5 76b916f3eeb80d44915d8c01200d0a94 2022-08-12
FileHash-MD5 782dd6152ab52361eba2bafd67771fa0 2022-08-12
FileHash-MD5 7d74663288cd910c7dfd00e4e3136a23 2022-08-12
FileHash-MD5 7f31636f9b74ab93a268f5a473066053 2022-08-12
FileHash-MD5 c914661e98b35630a9abc356f4b24c58 2022-08-12
FileHash-MD5 d28f0cfae377553fcb85918c29f4889b 2022-08-12
FileHash-MD5 dbb8f2e4225ed6fb09e78493052d50a8 2022-08-12
FileHash-MD5 fee16109b05f88040bc7f41e71dd50b5 2022-08-12