Honkbox
AlienVault
· Published 20/12/2025 19:37 · Modified 20/12/2025 23:29
Essential information
- Confidence
- 100/100
- Is family
- No
- Published
- 20/12/2025 19:37
- Modified
- 20/12/2025 23:29
- Revoked
- No
- Author / Source
- AlienVault
- Related entities
- 13 attack patterns (mitre), 32 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (13)
-
T1574 usesHijack Execution Flow MITRE
-
T1564 usesHide Artifacts MITRE
-
T1064 usesScripting MITRE
-
T1518 usesSoftware Discovery MITRE
-
T1082 usesSystem Information Discovery MITRE
-
T1036 usesMasquerading MITRE
-
T1027 usesObfuscated Files or Information MITRE
-
T1059 usesCommand and Scripting Interpreter MITRE
-
T1090 usesProxy MITRE
-
T1070 usesIndicator Removal MITRE
-
T1095 usesNon-Application Layer Protocol MITRE
-
T1553 usesSubvert Trust Controls MITRE
Indicators (32)
-
stix 100/100 Revoked
MacOS:Agent-VU\ [Drp] SHA256 of 69fd812cf3760dc3dff5d41972cc635de9a0844d
· Valid until 04/06/2024 · Source: AlienVault -
stix 100/100 Revoked
UPX SHA256 of 8907721154fc4079f9fc68e58c0ca742ffc1c9af
· Valid until 04/06/2024 · Source: AlienVault -
i2pseed.creativecowpat.netindicatesstix 100/100 Revoked· Valid until 14/06/2024 · Source: AlienVault -
stix 100/100 Revoked
MacOS:Agent-VU\ [Drp] SHA256 of 8ed83d6593bb0c7404f4571c91a4a80022088922
· Valid until 04/06/2024 · Source: AlienVault -
stix 100/100 Revoked
MacOS:Agent-VU\ [Drp] SHA256 of bebe1ad82d595434c6ef529cb4f75f4937a04e5f
· Valid until 04/06/2024 · Source: AlienVault -
stix 100/100 Revoked
SHA256 of 2ae591a3e14d77a9bc077fe61712c6b77f71fc11
· Valid until 04/06/2024 · Source: AlienVault -
stix 100/100 Revoked
MacOS:Agent-VU\ [Drp] SHA256 of 7628d90cfd311bfd4997729a232ca77a6d443619
· Valid until 04/06/2024 · Source: AlienVault -
stix 100/100 Revoked
MacOS:Agent-VU\ [Drp] SHA256 of 2defaf34319b6255db45c8bebf55d5095a41bed8
· Valid until 04/06/2024 · Source: AlienVault