Rewterz
Rewterz Threat Alert – Vtflooder Trojan – Active IOCs
July 2, 2022
Rewterz
Rewterz Threat Alert – Raccoon Infostealer – Active IOCs
July 2, 2022

Rewterz Threat Alert – Ramnit Malware – Active IOCs

Severity

Medium

Analysis Summary

The Ramnit malware has numerous variants, which may individually be categorized as trojans, viruses, or worms. The first ramnit malware discovered in 2010 were viruses that infected exe, .dll , and html files found on a computer. Later variants included the ability to steal confidential data from the infected machine. Depending on the variants, Ramnit-infected machines can also be enslaved in a botnet.

Impact

  • Information Theft
  • Exposure of Sensitive Data
  • Credential Theft

Indicators of Compromise

MD5

  • 6da623293e4972585d1395adc5dc4b0d

SHA-256

  • 139b5e2737385a0f4f4758b115b276da11abc4ceeddb747974c5c711e48949ab

SHA-1

  • de4e53f8bef0577e0d9b074bb85818e98dce4792

Remediation

  • Block the threat indicators at their respective controls.
  • Search for IOCs in your environment.