MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Trojan:Win32/WannaCry.350
Indicators of Compromise (1 / 11691 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 domain URL hostname FilePath CVE email
TYPEINDICATORDESCRIPTIONCREATED
FilePath c1a99e3bde9bad27e463c32b96311312.virus 2024-02-01
References (23)
↗ https://www.instagram.com/unipegasus_infotech_solutions/?hl=en (dang) ↗ cellebrite.com | enterprise.cellebrite.com ↗ http://pegasus.diskel.co.uk/ | china.pegasus-idc.com | imap.pegasustech.ne ↗ deviceinbox.com ↗ 671425187f3ec0da502d2e6b760de93661c1cf5381f81d21c64c6015fbcde2b3 ↗ c1a99e3bde9bad27e463c32b96311312.virus ↗ CS Yara rule:WannaCry_Ransomware from ruleset crime_wannacry by Florian Roth (Nextron Systems) (with the help of binar.ly) ↗ CS Yara rule:SUSP_Imphash_Mar23_2 from ruleset gen_imphash_detection by Arnim Rupp (https://github.com/ruppde) ↗ CS IDS rule: (icmp4) ICMP destination unreachable communication administratively prohibited ↗ CS IDS rule: (port_scan) TCP filtered portsweep ↗ CS IDS rule: (stream_tcp) data sent on stream after TCP reset received ↗ CS IDS rule: ET DROP Spamhaus DROP Listed Traffic Inbound group 14 ↗ CS Sigma Rule: Creation of an Executable by an Executable by frack113 ↗ Trojan:Win32/WannaCry.350 ↗ https://www.sweetheartvideo.com/tsara-brashears/ [Bot Network] ↗ angebot.staude.de ↗ https://otx.alienvault.com/indicator/file/1b7a83a7a35418afa60e88eabcb9fd5a8689700bba20dadb5fbad4e197ce1f1e ↗ https://cura360.com/foldawheel-phoenix-fully-powered-standing-wheelchair?utm_source=google&utm_medium=PLA&gad_source=1&gclid=EAIaIQobChMIw92wtdnigwMVhV9HAR126wDrEAQYASABEgJ_aPD_BwE ↗ https://www.anyxxxtube.net/search-porn/tsara-brashears/ ↗ https://www.sweetheartvideo.com/tsara-brashears/ ↗ https://www.pornhub.com/gifs/search?search=tsara+lynn+brashears+lesbian ↗ https://pin.it/ [Pinterest BotNetwork for Pegasus] ↗ http://joshuajenkinslaw.com/uploads/1/3/0/6/130639888/xetetorobezaj.pdf [redirect] http://joshuajenkinslaw.com/uploads/1/3/0/6/130639888/