Rewterz
Rewterz Threat Alert – NetWire RAT Malware – Active IOCs
August 17, 2021
Rewterz
Rewterz Threat Alert – Ursnif Banking Trojan – Active IOCs
August 17, 2021

Rewterz Threat Alert – Vidar Malware – Active IOCs

Severity

High

Analysis Summary

Spyware.Vidar is a product that offers threat actors the option to set their preferences for the stolen information. Besides credit card numbers and passwords, Vidar can also scrape an impressive selection of digital wallets. This spyware can be spread using various campaigns. Vidar, which originally became active in late 2018, is a family of malware that operates primarily as an information stealer and is often observed as a precursor to ransomware deployment. It enables the capture and exfiltration of data from a system, including system information, browser data, and credentials

Impact

  • Data exfiltration
  • Information theft
  • Exposure of sensitive data

Indicators of Compromise

MD5

  • 6e9b58546ba2c4715cbca57fe7639ffa
  • b146860b83e4b59ffb07dbbdff9b8e6d

SHA-256

  • c80ec8c4c90d27a8781b241d6127ccd9422204ceacdfc60ce78cc6ad4e62eba9
  • dd01ca4b5bfbe8ef00d23fd0c1227d58e7d6169a89e3f1ae9bbb4fbae46bfe21

SHA-1

  • d56a40b9bd167c98081920e232dec1dbb9bf5638
  • 06031a3261528c023af96b026e3f24589a46038c

URL

  • https[:]//free-4paid[.]com/belkasoft-evidence-center-crack-v10/

Remediation

  • Block all threat indicators at your respective controls.
  • Search for IOCs in your environment