RE#TURGENCE
AlienVault
· Published 20/12/2025 19:42 · Modified 21/12/2025 02:42
Essential information
- Confidence
- 100/100
- Is family
- No
- Published
- 20/12/2025 19:42
- Modified
- 21/12/2025 02:42
- Revoked
- No
- Author / Source
- AlienVault
- Related entities
- 16 attack patterns (mitre), 11 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (16)
-
T1505 usesServer Software Component MITRE
-
T1112 usesModify Registry MITRE
-
T1530 usesData from Cloud Storage MITRE
-
T1573 usesEncrypted Channel MITRE
-
T1098 usesAccount Manipulation MITRE
-
T1134 usesAccess Token Manipulation MITRE
-
T1003 usesOS Credential Dumping MITRE
-
T1486 usesData Encrypted for Impact MITRE
-
T1046 usesNetwork Service Discovery MITRE
-
T1055 usesProcess Injection MITRE
-
T1105 usesIngress Tool Transfer MITRE
-
T1219 usesRemote Access Tools MITRE
Indicators (11)
-
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault
-
stix 100/100 Revoked
Delphi
· Valid until 29/10/2025 · Source: AlienVault -
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault
-
seruvadessigen.3utilities.comindicatesstix 100/100 Revoked· Valid until 24/04/2025 · Source: AlienVault -
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault
-
http://88.214.26.3:25823/MSjkuindicatesstix 100/100 Revoked· Valid until 26/02/2024 · Source: AlienVault -
stix 100/100 Revoked· Valid until 14/04/2025 · Source: AlienVault