Earth Kurma
· Published 21/12/2025 14:03 · Modified 21/12/2025 14:03
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 21/12/2025 14:03
- Modified
- 21/12/2025 14:03
- Updated at
- 21/12/2025 14:03
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 16 attack patterns (mitre), 2 sectors, 51 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
11 MITREs 58 Observables 1 APT
Attack patterns (MITRE) (16)
-
T1547 usesBoot or Logon Autostart Execution MITRE
-
T1071 usesApplication Layer Protocol MITRE
-
T1005 usesData from Local System MITRE
-
T1190 usesExploit Public-Facing Application MITRE
-
T1133 usesExternal Remote Services MITRE
-
T1140 usesDeobfuscate/Decode Files or Information MITRE
-
T1595 usesActive Scanning MITRE
-
T1053 usesScheduled Task/Job MITRE
-
T1112 usesModify Registry MITRE
-
T1567 usesExfiltration Over Web Service MITRE
-
T1083 usesFile and Directory Discovery MITRE
-
T1021 usesRemote Services MITRE
Sectors (2)
-
Government targets
-
Telecommunications targets
Indicators (51)
-
34366323262346e10d8780bad9d30c6d4d747e4ec543243be76f33b7c028ea36indicates -
0a50587785bf821d224885cbfc65c5fd251b3e43cda90c3f49435bb3323d2a8bindicates -
004adec667373bdf6146e05b9a1c6e0c63941afd38e30c2461eaecb707352466indicates -
f52d9355b9efb6a1fcb32b890c5c373274df21ce38050d49416f469be95dc783indicates -
b26e8e0be066ee0b86f8fb2b0a703717ebbf34c8a33ef9a6f8f164ad012f1746indicates -
2c9b8e4852181d51ff72dc6dec78bef014db8af83d30c05c3e9c5eb060278730indicates -
823a0862d10f41524362ba8e8976ddfd4524c74075bd7f3beffa794afb54f196indicates -
www.igtsadlb2ra.pwindicates -
4198b4ec5bb0c72112e9cf835686c33b9a97037acfb7727e494046a73106e938indicates -
c6f73268eba553c7991f876a166440f5b4d519dea6b13bc90583fde1e89e81edindicates -
131bacdddd51f0d5d869b63912606719cd8f7a8f5b5f4237cbdb5c2e22e2cba2indicates -
1e48967e24d4ae2ac2697ef09c0f2702285825831bd516cb3be8859496fd296findicates