PULSE NAME
The Mystery of Metador | An Unattributed Threat Hiding in
WHITE Metador AlienVault 2022-09-23 Modified: 2022-09-23
9
IOCs
LOW VOLUME
Metador primarily targets telecommunications, internet service providers, and universities in several countries in the Middle East and Africa. The operators are highly aware of operations security, managing carefully segmented infrastructure per victim, and quickly deploying intricate countermeasures in the presence of security solutions. Metador’s attack chains are designed to bypass native security solutions while deploying malware platforms directly into memory.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (9)
All FileHash-SHA1 domain
TYPEINDICATORDESCRIPTIONCREATED
FileHash-SHA1 9fc7df2b2539ec3abeb90848903ad608a1101345 2022-09-23
FileHash-SHA1 e7f68dc6b8e4cabe5773a5b0b2306a404706de48 2022-09-23
FileHash-SHA1 00f2176edb17d970005fc70a66ecc587a84f8620 2022-09-23
FileHash-SHA1 0397b92bd8606e2b11ec6518c2df43decaf02382 2022-09-23
FileHash-SHA1 0f021a6c32f4d9053a9d8fb36749f8c434376fd1 2022-09-23
FileHash-SHA1 3e2724b9a8ecf05661d91b02accdc1da7e43d513 2022-09-23
FileHash-SHA1 b5d35c1e75330c0b26ebbd562191beb7f03d726b 2022-09-23
FileHash-SHA1 fdec8be5d5f2693fbfa36fdf38aa8f9932c6a34a 2022-09-23
domain networkselfhelp.com 2022-09-23