• Services
    • Assess
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Transform
      • SOC Consultancy
      •     SOC Maturity Assessment
      •     SOC Model Evaluation
      •     SOC Gap Analysis
      •     SIEM Gap Analysis
      •     SIEM Optimization
      •     SOC Content Pack
    • Train
      • Security Awareness and Training
      • Tabletop Exercise
      • Simulated Cyber Attack Exercises
    • Respond
      • Incident Response
      • Incident Analysis
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Press Release
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
Rewterz Threat Alert – GuLoader Malspam Campaign – Active IOCs
September 2, 2021
Rewterz Threat Alert – Hive Ransomware – Active IOCs
September 2, 2021

Rewterz Threat Alert – Vidar Malware – Active IOCs

September 2, 2021

Severity

High

Analysis Summary

Spyware.Vidar is a product that offers threat actors the option to set their preferences for the stolen information. Besides credit card numbers and passwords, Vidar can also scrape an impressive selection of digital wallets. This spyware can be spread using various campaigns. Vidar, which originally became active in late 2018, is a family of malware that operates primarily as an information stealer and is often observed as a precursor to ransomware deployment. It enables the capture and exfiltration of data from a system, including system information, browser data, and credentials

Impact

  • Data exfiltration
  • Information theft
  • Exposure of sensitive data

Indicators of Compromise

MD5

  • cdfe55d91d06b911a69eb050ae0abbfe
  • 9ede6811a55c8082d02b552392595f06
  • 5c33f197a18ecd8b57cf08d6ebd13928

SHA-256

  • d950a4ee53971eb72e947a01bb1093a04676b7587fc0c6ccc26d9c964b1fc916
  • 2ca6487650676dfac02da8af32d2eea7c0a2162ff5c9881c54f698beac6921c4
  • 63266aea1d54b555b60e617863f011693cae7cacfae8ec5f7e4c80b11ee766e0

SHA-1

  • cafc732020641aac537da6beef18ea3c208d89fa
  • f6490ccb746fabb8eaa25dd09e415af9d59410d0
  • 7159df51bde4f5c1bc804c74c32f146c290664ed

URL

  • https[:]//up4pc[.]com/internet-download-manager-crack/
  • https[:]//doload[.]org/adobe-photoshop-cs6-serial-number-crack-free-download-1/

Remediation

  • Block all threat indicators at your respective controls.
  • Search for IOCs in your environment.
  • Services
    • Assess
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Respond
      • Incident Response
      • Incident Analysis
  • Transform
    • SOC Consultancy
    •     SOC Maturity Assessment
    •     SOC Model Evaluation
    •     SOC Gap Analysis
    •     SIEM Gap Analysis
    •     SIEM Optimization
    •     SOC Content Pack
  • Train
    • Security Awareness and Training
    • Tabletop Exercise
    • Simulated Cyber Attack Exercises
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
COPYRIGHT © REWTERZ. ALL RIGHTS RESERVED.