

Rewterz Threat Alert – Mirai Botnet – Active IOCs
November 12, 2021
Rewterz Threat Advisory – Multiple Apache Vulnerabilities
November 15, 2021
Rewterz Threat Alert – Mirai Botnet – Active IOCs
November 12, 2021
Rewterz Threat Advisory – Multiple Apache Vulnerabilities
November 15, 2021Severity
High
Analysis Summary
Spyware.Vidar is a product that offers threat actors the option to set their preferences for the stolen information. Besides credit card numbers and passwords, Vidar can also scrape an impressive selection of digital wallets. This spyware can be spread using various campaigns. Vidar, which originally became active in late 2018, is a family of malware that operates primarily as an information stealer and is often observed as a precursor to ransomware deployment. It enables the capture and exfiltration of data from a system, including system information, browser data, and credentials.
Impact
- Data Exfiltration
- Information Theft
- Exposure of Sensitive Data
Indicators of Compromise
MD5
- 52d5dab06aa1b976bb7c584b36f95c2d
SHA-256
- 3d9b1ddce39d90bb1efa52a5f866f74ea8b9acb922ec27fb15b753e45c864c90
- e900ac3cab9426343b52175d0231db15f2dfdaaea863e75ed79b9f0dc81348a3
- 54dddc537872485f5654b697e78de46893386a6dc5eb24a219253b2cb445a4c7
- 3b384557d05a9c1a7a528759afb4e4e45be842a00fc5170e54538f50bcab2c47
SHA-1
- b5b3cdd6e1ac21f8382991240cac3d50af63f967
Remediation
- Block all threat indicators at your respective controls.
- Search for IOCs in your environment.