Rewterz Threat Advisory – Multiple Cisco Small Business routers Vulnerabilities
August 21, 2022Rewterz Threat Alert – Nanocore Rat – Active IOCs
August 21, 2022Rewterz Threat Advisory – Multiple Cisco Small Business routers Vulnerabilities
August 21, 2022Rewterz Threat Alert – Nanocore Rat – Active IOCs
August 21, 2022Severity
High
Analysis Summary
A new Mirai variant is making the rounds called mirai_pteamirai. This botnet is one of the significant botnets targeting exposed networking devices running Linux. Mirai means ‘future’ in Japanese. This botnet is one of the active botnet and used to cause DDoS conditions. IP cameras, home routers, and other IoT devices are the common targets of this botnet.
Impact
- Server Outage
- Data Loss
- Website Downtime
Indicators of Compromise
MD5
- 053632d2ae5c58be965c368049293bad
- 552dd049b20f9fbfd2ce958ef6281d3b
- 5536e3898d2a07bb09b95e21088391aa
- 3f061bdf53699b1ab8dd2f3a931965a5
- d9ed2ba1909538cac5ea30b221c7f0e1
- 2b826ed23d0ab9c7fab066761fc03d56
- 140db298fe277ee640fa8435423ed0a8
- 6e292947210cd92b11b237fc535323f6
- e4c7bb67184e25965e84800890737f02
- 54bdded79593d3d0bc46b8790e6f245d
- 551857dcb5635fd7aa2ae72b5f3e9abf
SHA-256
- bbc92dc2a641998894a1c8fea1ccc6c4ee905fb75db2cce6ae325661341f6586
- 41d17a0e69798f25e2b68d6f962ff5db12ab5000490e22fd37c9f97cdaef001a
- 2682fb8d9b10e4581eb71fba644bd0a1d5e9af45b078db3ceadfb463c9ffad80
- ef4b1d809fbfa420f43f255504d51fe90795d5e6c80c93c996b49d14afe91ff0
- cdb965983a63d87891b82ee266d242d618054b22a1e9a45b430e062ad9e66b3f
- 56efc9b59b3f09aef80fe78ca1ccb5a4b0a43f019679d537df34d4c58df0d6e5
- 0507968a6b28ea1bf4f9de6aca126b6ae1681b55c05e13257b3590b4b9f6278c
- 85ddf3a46f3e9f82213a450e863765fb54e610096ee0f32076db6c5a3052002b
- f5888350e9b395401d4c130bb42032491cfa679df4396703f9374016a56bf1f1
- 4b7e6196600082c832569a856bb8348d0948f277dee54842f1fff3773e854237
- fdc4741b5b777628d8dc0f4a75fa79cdbaa5f9fc66751cedbba8770cf5085149
SHA-1
- f443c93197774af220d8760439251fdf2fed6f5c
- 53255f42e0b5907adee777bed7ec53f6d1532a8b
- 392eb8e1edccd7c7f6a9862e101729db1ea4233d
- e831c1d5e0a0e941a7e2de42db8f6bf5c78ee8ce
- 12277fb06fbecdb134112307c84b0bdc5d34a8bd
- c216dad6f369a8895c16aba5d56c311b0ebc1593
- 2d9481ad6e92d2aa00cf6c444169465b96498a63
- 4cf537efb1937dd20fd89834bd3cfa88f69dc145
- 33aa2e8e22ba1c8b39c010efeee6a15b40d260a4
- a2120d32ef451f0134235b80c88504d411944283
- 38b2801743ee4786027074070a8c6623123a9dd6
Remediation
- Upgrade your operating system.
- Don’t open files and links from unknown sources.
- Install and run anti-virus scans.