GrayCharlie
· Published 18/02/2026 20:10 · Modified 18/02/2026 20:10
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 18/02/2026 20:10
- Modified
- 18/02/2026 20:10
- Updated at
- 18/02/2026 20:10
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 24 attack patterns (mitre), 3 malware, 1 sectors, 1 countries, 171 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
24 MITREs 3 Malwares 147 Observables 1 APT
Attack patterns (MITRE) (24)
-
T1021.002 usesSMB/Windows Admin Shares MITRE
-
T1204.001 usesMalicious Link MITRE
-
T1059.003 usesWindows Command Shell MITRE
-
T1021.006 usesWindows Remote Management MITRE
-
T1547.001 usesRegistry Run Keys / Startup Folder MITRE
-
T1140 usesDeobfuscate/Decode Files or Information MITRE
-
T1114 usesEmail Collection MITRE
-
T1518 usesSoftware Discovery MITRE
-
T1190 usesExploit Public-Facing Application MITRE
-
T1027 usesObfuscated Files or Information MITRE
-
T1059.001 usesPowerShell MITRE
-
T1133 usesExternal Remote Services MITRE
Malware (3)
-
StealC usesFamily
-
SectopRAT usesFamily
-
NetSupport RAT usesFamily
Sectors (1)
-
Legal targets
Countries (1)
-
United States of America targets
Indicators (171)
-
59e7e7698d77531bfbfea4739d29c14e188b5d3109f63881b9bcc87c72e9de78indicates -
mybeststream.xyzindicates -
menjimmychooonline.topindicates -
k2bsc.topindicates -
via345.topindicates -
movtime78.shopindicates -
alhasba.comindicates -
www.cfblaw.comindicates -
bestproductreviews.xyzindicates -
185.163.45.16indicates -
5.181.159.9indicates -
https://persistancejs.store/work/original.jsindicates