mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-23 07:17:17 +00:00
Add WellMess and WellMail
This commit is contained in:
parent
fef7cf4b4f
commit
9cadabba7a
1 changed files with 34 additions and 1 deletions
|
@ -8093,7 +8093,40 @@
|
||||||
"related": [],
|
"related": [],
|
||||||
"uuid": "e83d1296-027a-4f30-98e0-19622967d5c4",
|
"uuid": "e83d1296-027a-4f30-98e0-19622967d5c4",
|
||||||
"value": "CrackMapExec"
|
"value": "CrackMapExec"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"description": "Wellmess is a Remote Access Trojan written in Golang and also have a .NET version",
|
||||||
|
"meta": {
|
||||||
|
"refs": [
|
||||||
|
"https://www.lac.co.jp/lacwatch/pdf/20180614_cecreport_vol3.pdf",
|
||||||
|
"https://blogs.jpcert.or.jp/en/2018/07/malware-wellmes-9b78.html",
|
||||||
|
"https://www.botconf.eu/wp-content/uploads/2018/12/2018-Y-Ishikawa-S-Nagano-Lets-go-with-a-Go-RAT-_final.pdf",
|
||||||
|
"https://www.ncsc.gov.uk/files/Advisory-APT29-targets-COVID-19-vaccine-development.pdf"
|
||||||
|
],
|
||||||
|
"synonyms": [],
|
||||||
|
"type": [
|
||||||
|
"RAT"
|
||||||
|
]
|
||||||
|
},
|
||||||
|
"related": [],
|
||||||
|
"uuid": "4fe80228-1142-4e70-9df8-c8f1f3356cfb",
|
||||||
|
"value": "WellMess"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"description": "WellMail is a lightweight tool designed to run commands or scripts with the results being sent to a hardcoded Command and Control (C2) server.",
|
||||||
|
"meta": {
|
||||||
|
"refs": [
|
||||||
|
"https://www.ncsc.gov.uk/files/Advisory-APT29-targets-COVID-19-vaccine-development.pdf"
|
||||||
|
],
|
||||||
|
"synonyms": [],
|
||||||
|
"type": [
|
||||||
|
"RAT"
|
||||||
|
]
|
||||||
|
},
|
||||||
|
"related": [],
|
||||||
|
"uuid": "59266c02-e3c8-47a6-b00c-bbb50c8975e9",
|
||||||
|
"value": "WellMail"
|
||||||
}
|
}
|
||||||
],
|
],
|
||||||
"version": 136
|
"version": 137
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue