Commit Graph

318 Commits (15b27f949710ede4fd4f5316017b05c401375f8d)

Author SHA1 Message Date
snurilov 44e9da1390
Add ConfuserEx and Beds Protector .NET packers to tools.json cluster
Add ConfuserEx and Beds Protector .NET packers to tools.json cluster
2020-11-11 23:09:03 -05:00
JJ Cummings c48a38c2f1
Added a new cryptominer galaxy and additional missing recent families to various clusters 2020-10-29 14:40:22 -06:00
Thomas Dupuy 4009ef9997 Fix: remove comma 2020-08-14 13:01:37 -04:00
Thomas Dupuy 72554ed71c Add Drovorub tool 2020-08-13 15:08:32 -04:00
Thomas Dupuy 9cadabba7a Add WellMess and WellMail 2020-08-11 12:37:28 -04:00
Thomas Dupuy 143bd521be Add CrackMapExec, metasploit, Cobalt Strike and Covenant 2020-05-26 09:35:01 -04:00
Thomas Dupuy fc9505cadf Add Sednit's Exploit-kit Sedkit 2020-05-08 13:29:14 -04:00
Thomas Dupuy 46a6d9fcb1 Add DenesRAT/METALJACK 2020-04-28 01:08:50 -04:00
Alexandre Dulaunoy 2a70893352
chg: [jq] JSON fixed 2020-04-27 15:03:25 +02:00
de Rosen a428ad565e Added misp info 2020-04-27 15:16:33 +03:00
Deborah Servili f196bad4a1
add tools used by TA505 + others 2020-02-12 15:39:16 +01:00
Deborah Servili 5ec817b499
Merge branch 'master' into master 2020-01-15 14:36:01 +01:00
Deborah Servili 32961527aa
add Autochk Rootkit as tool 2020-01-15 13:41:53 +01:00
Deborah Servili bfcc867ee6
add two wipers to tools 2020-01-14 15:54:06 +01:00
StefanKelm 5832893d4f
Update tool.json
LiquorBot
2020-01-08 16:04:22 +01:00
StefanKelm bf4fc92066
Update tool.json
Lampion
2020-01-07 13:14:08 +01:00
Deborah Servili 0fc9045ef2
add tools used by GALLIUM 2019-12-13 15:06:00 +01:00
Deborah Servili 12530db5a8
Add FlexiSPY + jq 2019-12-05 10:05:21 +01:00
Deborah Servili 2e82cd4fd7
add Private Internet Access as Tool 2019-12-04 16:22:22 +01:00
Deborah Servili cab60a02e2
jq 2019-11-22 14:15:29 +01:00
Deborah Servili 08a4897cbe
add DePriMon malicious downloader & Cyborg ransomware 2019-11-22 14:05:36 +01:00
Deborah Servili bee9b80898
jq 2019-10-31 10:37:36 +01:00
Deborah Servili 0a8f989e1c
add Winnti related tools etc. 2019-10-31 10:36:15 +01:00
Deborah Servili c27385cfa4
jq 2019-10-07 14:38:16 +02:00
Deborah Servili 5355910a8f
add legitimate tools 2019-10-07 13:38:40 +02:00
Alexandre Dulaunoy ac8236d16d
chg: [misp-galaxy] jq all the things 2019-10-03 14:46:07 +02:00
Alexandre Dulaunoy 9e82b025b5
chg: [tool] COMPfun - Reductor added
Ref: https://securelist.com/compfun-successor-reductor/93633/
2019-10-03 14:25:44 +02:00
Deborah Servili b7c9d3e034
jq 2019-09-30 11:56:28 +02:00
Deborah Servili fca032ea73
add TVSPY tool 2019-09-30 10:45:53 +02:00
Deborah Servili e239619d15
jq 2019-08-06 15:42:20 +02:00
Deborah Servili 53df0908c7
update version 2019-08-06 15:34:23 +02:00
Deborah Servili 4bef48b33e
add Amavaldo 2019-08-06 13:28:32 +02:00
Deborah Servili f4cf3464ce
update threat actors and tools 2019-05-28 16:05:54 +02:00
Deborah Servili bf19ed9d8d
fix merge mistakes 2019-05-28 09:26:24 +02:00
Deborah Servili 0bb1420ab7
update threat-actor galaxy 2019-05-27 16:38:01 +02:00
Deborah Servili af6241fd20
update Anchor Panda Threat Actor 2019-05-27 11:47:05 +02:00
Deborah Servili 9f801122da
add Reaver and probably related tools 2019-05-16 15:45:03 +02:00
Raphaël Vinot 82ebbc6612 fix: UUID issues 2019-05-07 12:09:39 +02:00
Deborah Servili ad00477c87
add Scarnos 2019-05-03 15:55:19 +02:00
Deborah Servili dda2ede5f2
add JasperLoader 2019-05-02 13:02:00 +02:00
Alexandre Dulaunoy 2405f1c59e
chg: [tool] Cowboy and KimJongRAT (Sorry Paul, we forgot ;-)
ref: https://unit42.paloaltonetworks.com/babyshark-malware-part-two-attacks-continue-using-kimjongrat-and-pcrat/
2019-04-27 09:33:55 +02:00
Alexandre Dulaunoy 094f0e0684
chg: [tool] jq all the things 2019-04-24 12:58:49 +02:00
Alexandre Dulaunoy 088e7477a6
chg: [tool] Karkoff tool added 2019-04-24 11:40:06 +02:00
rmkml 54cd80ee2d Add Brushaloader Malware 2019-04-12 22:42:57 +02:00
Deborah Servili 6027d546f2
Add Operation ShadowHammer 2019-03-26 10:40:29 +01:00
Deborah Servili 575dd64582
add relationship between Cardinal RAT and EVILNUM 2019-03-26 08:41:11 +01:00
Thomas Dupuy 60d79b0153 add synonym, no need for uppercase in the name :) 2019-03-13 23:07:10 +01:00
Deborah Servili 7576d0db02
relations between SLUB Backdoor 2019-03-11 09:01:12 +01:00
Deborah Servili ddab5f7006
Merge branch 'master' into master 2019-03-11 08:40:11 +01:00
Deborah Servili 2815e48610
add StealthWorker malware 2019-03-08 15:57:30 +01:00