CoinLurker
· Published 21/12/2025 08:28 · Modified 21/12/2025 08:28
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 21/12/2025 08:28
- Modified
- 21/12/2025 08:28
- Updated at
- 21/12/2025 08:28
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 14 attack patterns (mitre), 1 malware, 1 sectors, 50 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
14 MITREs 1 Malware 50 Observables 1 APT
Attack patterns (MITRE) (14)
-
T1027 usesObfuscated Files or Information MITRE
-
T1056 usesInput Capture MITRE
-
T1055 usesProcess Injection MITRE
-
T1083 usesFile and Directory Discovery MITRE
-
T1140 usesDeobfuscate/Decode Files or Information MITRE
-
T1553.002 usesCode Signing MITRE
-
T1573 usesEncrypted Channel MITRE
-
T1012 usesQuery Registry MITRE
-
T1071 usesApplication Layer Protocol MITRE
-
T1102 usesWeb Service MITRE
-
T1059 usesCommand and Scripting Interpreter MITRE
-
T1547 usesBoot or Logon Autostart Execution MITRE
Malware (1)
-
CoinLurker usesFamily
Sectors (1)
-
Finance targets
Indicators (50)
-
cc2f65faf61154815b4fa151d9a27c01a160d7d46398c7e44169949a61c63c2bindicates -
93cc9759d86f8b087b71583f577a5534e975ce9ac19ec3ec140efa6bbfad6bd0indicates -
a7eca930c2aa851cae3475cb4f5d599058816d51e1cc55a82ae976a030794aacindicates -
9c0c9945f81977269542f941c10fa28dbefe91078b6df68e97d61b58318cac9aindicates -
324e1bf24f13d5a8f45cc5ee25d3dfe330a7e755b19901549976f2db02ca4fa4indicates -
9374e1561a87a23b12ec586859661241b2eb5da822c0b4b874cdf9eda480363findicates -
9ea70e081c13c4b0e30b43dd68a6a0e0cfb6926c990bbe8ddedd8d9693c953d6indicates -
2c8f611b0f2c157f010c20379d4fcd725a8c462a8d226ae0095e3e0fb110ddbeindicates -
11cefe96966858c237a3aff132e5c54d0d1bcd343a23b23fcc24735bcefc811cindicates -
80b2950f1249d439105eac421660ddd15caab6de6afce3511f945deef1c0dd21indicates -
paveldurov.sbsindicates -
http://ndas8m92.shop/endpointindicates