IoCs

208 IoCs

Type Value First Seen Last Seen
YARA detct_RokRat 2025-03-10 2025-03-10
YARA detect_sidecopy 2025-02-21 2025-02-21
YARA hta_file 2025-02-21 2025-02-21
YARA detect_lnk 2025-02-21 2025-02-21
YARA sidewinder 2025-02-21 2025-02-21
YARA rustyattr 2024-11-13 2024-11-13
YARA M_APT_Launcher_TEARPAGE_1 2024-09-17 2024-09-17
YARA M_APT_Backdoor_MISTPEN_2 2024-09-17 2024-09-17
YARA M_Launcher_BURNBOOK_2 2024-09-17 2024-09-17
YARA M_Launcher_BURNBOOK_1 2024-09-17 2024-09-17
YARA TrollAgent_Kimsuky_Stealer 2024-07-15 2024-07-15
YARA MeshAgent_Config 2024-07-09 2024-07-09
YARA MeshAgent_ELF 2024-07-09 2024-07-09
YARA NikiCert 2024-06-19 2024-06-19
YARA NikiGo 2024-06-19 2024-06-19
First seen: 2025-03-10 • Last seen: 2025-03-10

hta_file

YARA
First seen: 2025-02-21 • Last seen: 2025-02-21

detect_lnk

YARA
First seen: 2025-02-21 • Last seen: 2025-02-21

sidewinder

YARA
First seen: 2025-02-21 • Last seen: 2025-02-21

rustyattr

YARA
First seen: 2024-11-13 • Last seen: 2024-11-13
First seen: 2024-07-09 • Last seen: 2024-07-09

NikiCert

YARA
First seen: 2024-06-19 • Last seen: 2024-06-19

NikiGo

YARA
First seen: 2024-06-19 • Last seen: 2024-06-19
First seen: Mar 2025
Last seen: Mar 2025

hta_file

YARA
First seen: Feb 2025
Last seen: Feb 2025

detect_lnk

YARA
First seen: Feb 2025
Last seen: Feb 2025

sidewinder

YARA
First seen: Feb 2025
Last seen: Feb 2025

rustyattr

YARA
First seen: Nov 2024
Last seen: Nov 2024

NikiCert

YARA
First seen: Jun 2024
Last seen: Jun 2024

NikiGo

YARA
First seen: Jun 2024
Last seen: Jun 2024
⚠ These IoCs were automatically extracted using regular expressions or an LLM and may include non-malicious data.