Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Severity
Medium
Analysis Summary
Following threat indicators have been retrieved from multiple malware and phishing campaigns. These malicious IPs and domains are involved in dropping various Trojans and malware.
Impact
Andromeda
Generic Trojan
RETADUP
DarkGate
VBS.Unk
Chthonic
IcedID
Worm
Infostealer
Banking Trojan
Indicators of Compromise
IP(s) / Hostname(s) | 75.183.130[.]158 69.89.31[.]139 192.185.5[.]208 162.241.218[.]118 173.50.48[.]59 169.207.67[.]14 |
URLs | disorderstatus[.]ru differentia[.]ru changetheworld[.]bit newage[.]newminersage[.]com newage[.]radnewage[.]com utorrentsp2p[.]nz top[.]theandroidstore[.]tv atomary[.]bit centechnya[.]pw enversial[.]com jq[.]syrusdesign[.]com melbourg[.]ooo rogersbvrly0123.ddns[.]net |
Email Address | mmswholesaleltd[@]homdpot[.]com |
Malware Hash (MD5/SHA1/SH256) | 36ace63e783dd0ca36cb1e441c8ff249 132b9d25754543036c8913c35bea1c47 |
Remediation
Block the threat indicators at their respective controls.