Skip to content

Files

Latest commit

25e94dd · Jul 5, 2021

History

History
51 lines (51 loc) · 1.71 KB

Ransomware-REvil-Kaseya.csv

File metadata and controls

51 lines (51 loc) · 1.71 KB
1
Indicator_typeDataNote
2
file_path_nameC:\windows\cert.exeCopied CERTUTIL
3
file_path_nameC:\windows\msmpeng.exeOutdated Defender executable vulnerable to DLL sideload
4
sha25633bc14d231a4afaa18f06513766d5f69d8b88f1e697cd127d24fb4b72ad44c7aOutdated Defender executable vulnerable to DLL sideload
5
file_path_nameC:\kworking\agent.crtRevil dropper used in Kaseya exploit
6
sha256d55f983c994caa160ec63a59f6b4250fe67fb3e8c43a388aec60a4a6978e9f1Revil dropper used in Kaseya exploit
7
file_path_nameC:\windows\mpsvc.dllRevil ransomware DLL
8
sha2568dd620d9aeb35960bb766458c8890ede987c33d239cf730f93fe49d90ae759ddRevil ransomware DLL
9
domainncuccr.org
10
domain1team.es
11
domain4net.guru
12
domain35-40konkatsu.net
13
domain123vrachi.ru
14
domain4youbeautysalon.com
15
domain12starhd.online
16
domain101gowrie.com
17
domain8449nohate.org
18
domain1kbk.com.ua
19
domain365questions.org
20
domain321play.com.hk
21
domaincandyhouseusa.com
22
domainandersongilmour.co.uk
23
domainfacettenreich27.de
24
domainblgr.be
25
domainfannmedias.com
26
domainsoutheasternacademyofprosthodontics.org
27
domainfilmstreamingvfcomplet.be
28
domainsmartypractice.com
29
domaintanzschule-kieber.de
30
domainiqbalscientific.com
31
domainpasvenska.se
32
domaincursosgratuitosnainternet.com
33
domainbierensgebakkramen.nl
34
domainc2e-poitiers.com
35
domaingonzalezfornes.es
36
domaintonelektro.nl
37
domainmilestoneshows.com
38
domainblossombeyond50.com
39
domainthomasvicino.com
40
domainkaotikkustomz.com
41
domainmindpackstudios.com
42
domainfaroairporttransfers.net
43
domaindaklesa.de
44
domainbxdf.info
45
domainsimoneblum.de
46
domaingmto.fr
47
domaincerebralforce.net
48
domainmyhostcloud.com
49
domainfotoscondron.com
50
domainsw1m.ru
51
domainhomng.net