CLNTEND
AlienVault
· Published 20/12/2025 19:56 · Modified 21/12/2025 14:13
Essential information
- Confidence
- 100/100
- Is family
- No
- Published
- 20/12/2025 19:56
- Modified
- 21/12/2025 14:13
- Revoked
- No
- Author / Source
- AlienVault
- Related entities
- 19 attack patterns (mitre), 5 sectors, 2 countries, 26 indicators, 1 reports
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (19)
-
T1021 usesRemote Services MITRE
-
T1583 usesAcquire Infrastructure MITRE
-
T1102 usesWeb Service MITRE
-
T1059 usesCommand and Scripting Interpreter MITRE
-
T1095 usesNon-Application Layer Protocol MITRE
-
T1003 usesOS Credential Dumping MITRE
-
T1070 usesIndicator Removal MITRE
-
T1036 usesMasquerading MITRE
-
T1543 usesCreate or Modify System Process MITRE
-
T1053 usesScheduled Task/Job MITRE
-
T1190 usesExploit Public-Facing Application MITRE
-
T1571 usesNon-Standard Port MITRE
Sectors (5)
-
Media targets
-
Defense targets
-
Manufacturing targets
-
Technology targets
-
Healthcare targets
Countries (2)
-
Taiwan targets
-
Canada targets
Indicators (26)
-
service.symantecsecuritycloud.comindicatesstix 100/100 Revoked· Valid until 18/04/2026 · Source: AlienVault -
stix 100/100 Revoked· Valid until 10/05/2026 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 10/05/2026 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 10/05/2026 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 10/05/2026 · Source: AlienVault
-
stix 100/100 Revoked
Win.Malware.Gosys-10032614-0
· Valid until 10/05/2026 · Source: AlienVault -
stix 100/100 Revoked· Valid until 10/05/2026 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 10/05/2026 · Source: AlienVault
Reports (1)
-
19 MITREs 3 Malwares 29 Observables