IoC (TT Malware Log)

Malware の IoC(Indicator)情報

◆注意◆ マルウェア解析専析家向けサイト

     FQDN, URL,IPアドレス等はそのまま掲載しています


** Caution ** Malware expert site

                    FQDN, URL, IP address etc. are posted as they are

FONIX (2020/10/06)

【インディケータ情報】

■ハッシュ情報(Sha256) - FONIX -

e5324495a9328fe98187239565c05b077680b2ebc9183a6e3e2ccfbfa9f0295a
5263c485f21886aad8737183a71ddc1dc77a92f64c58657c0628374e09bb6899
658ec5aac2290606dba741bce30853515795028322162167395cebc5d0bfccf4

(以上は SentinalLabs の情報: 引用元は https://labs.sentinelone.com/the-fonix-raas-new-low-key-threat-with-unnecessary-complexities/ )


■ハッシュ情報(Sha1) - FONIX -

a94f92f1e6e4fed57ecb2f4ad55e22809197ba2e
1f551246c5ed70e12371891f0fc6c2149d5fac6b
63cae6a594535e8821c160da4b9a58fc71e46eb2

(以上は SentinalLabs の情報: 引用元は https://labs.sentinelone.com/the-fonix-raas-new-low-key-threat-with-unnecessary-complexities/ )


【検索】

google: FONIX Ransomware
google: FONIX RaaS

google: e5324495a9328fe98187239565c05b077680b2ebc9183a6e3e2ccfbfa9f0295a
google: 5263c485f21886aad8737183a71ddc1dc77a92f64c58657c0628374e09bb6899
google: 658ec5aac2290606dba741bce30853515795028322162167395cebc5d0bfccf4

google: a94f92f1e6e4fed57ecb2f4ad55e22809197ba2e
google: 1f551246c5ed70e12371891f0fc6c2149d5fac6b
google: 63cae6a594535e8821c160da4b9a58fc71e46eb2


【VT検索】

https://www.virustotal.com/gui/file/e5324495a9328fe98187239565c05b077680b2ebc9183a6e3e2ccfbfa9f0295a
https://www.virustotal.com/gui/file/5263c485f21886aad8737183a71ddc1dc77a92f64c58657c0628374e09bb6899
https://www.virustotal.com/gui/file/658ec5aac2290606dba741bce30853515795028322162167395cebc5d0bfccf4

https://www.virustotal.com/gui/file/a94f92f1e6e4fed57ecb2f4ad55e22809197ba2e
https://www.virustotal.com/gui/file/1f551246c5ed70e12371891f0fc6c2149d5fac6b
https://www.virustotal.com/gui/file/63cae6a594535e8821c160da4b9a58fc71e46eb2




【ブログ】

◆The FONIX RaaS | New Low-Key Threat with Unnecessary Complexities (SentinalLabs, 2020/10/06)
https://labs.sentinelone.com/the-fonix-raas-new-low-key-threat-with-unnecessary-complexities/
https://malware-log.hatenablog.com/entry/2020/10/06/000000_2