CAPIBAR and KAZUAR Malware Detection: Turla aka UAC-0024 or UAC-0003 Launches Targeted Cyber-Espionage Campaigns Against Ukraine

0
81
tuuid Collects anonymous data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages were loaded. tuuid_last_update Collects anonymous data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages were loaded. Umm Collects anonymous data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages were loaded. Umm Collects anonymous data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages were loaded. na_sc_x The social sharing platform AddThis is used to keep a record of the parts of the website that have been visited in order to recommend other parts of the website. APID Collects anonymous data related to the user’s visits to the website. IDSYNC Collects anonymous data related to the user’s visits to the website. _cc_aud Collects anonymous statistical data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages have been loaded. The goal is to segment website users by factors such as demographics and geographic location, in order to allow media and marketing agencies to build and understand their target groups to enable personalized online advertising. _cc_cc Collects anonymous statistical data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages have been loaded. The goal is to segment website users by factors such as demographics and geographic location, in order to allow media and marketing agencies to build and understand their target groups to enable personalized online advertising. _cc_dc Collects anonymous statistical data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages have been loaded. The goal is to segment website users by factors such as demographics and geographic location, in order to allow media and marketing agencies to build and understand their target groups to enable personalized online advertising. _cc_id Collects anonymous statistical data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages have been loaded. The goal is to segment website users by factors such as demographics and geographic location, in order to allow media and marketing agencies to build and understand their target groups to enable personalized online advertising. dpm Using a unique identifier used for semantic content analysis, the user’s navigation on the site is recorded and linked to offline data from surveys and similar registrations to serve targeted ads. acs Collects anonymous data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages were loaded, in order to display targeted ads. the click Collects anonymous data related to the user’s visits to the website, such as the number of visits, average time spent on the website and which pages were loaded, in order to display targeted ads. KRTBCOOKIE_# Record a unique identifier that identifies the user’s device during repeated visits to sites that use the same ad network. The ID is used to enable targeted ads. PUBMDCID Record a unique identifier that identifies the user’s device during repeated visits to sites that use the same ad network. The ID is used to enable targeted ads. PugT Record a unique identifier that identifies the user’s device during repeated visits to sites that use the same ad network. The ID is used to enable targeted ads. ssi Record a unique identifier that identifies a returning user’s device. The ID is used for targeted ads. _tmid Record a unique ID that identifies the user’s device on repeat visits. The ID is used to target ads in video clips. wam-sync Used by the Weborama advertising platform to determine visitor interests based on page visits, content clicked and other actions on the site. wui Used by the Weborama advertising platform to determine visitor interests based on page visits, content clicked and other actions on the site. AFFICHE_W Used by the Weborama advertising platform to determine visitor interests based on page visits, content clicked and other actions on the site. B Collects anonymous data related to the user’s visits to the website, such as the number of entries, average time spent on the website and which pages were loaded. The registered data is used to classify the interests and demographic profiles of the users in order to personalize the website content according to the visitor. 1P_JAR These cookies are used to collect website statistics and track conversion rates. APISID Google has set a number of cookies on each page that includes Google’s reCAPTCHA. Although we have no control over the cookies set by Google, they appear to include a mixture of pieces of information to measure the number and behavior of Google reCAPTCHA users. HSID Google has set a number of cookies on each page that includes Google’s reCAPTCHA. Although we have no control over the cookies set by Google, they appear to include a mixture of pieces of information to measure the number and behavior of Google reCAPTCHA users. NID Google has set a number of cookies on each page that includes Google’s reCAPTCHA. Although we have no control over the cookies set by Google, they appear to include a mixture of pieces of information to measure the number and behavior of Google reCAPTCHA users. SAPISID Google has set a number of cookies on each page that includes Google’s reCAPTCHA. Although we have no control over the cookies set by Google, they appear to include a mixture of pieces of information to measure the number and behavior of Google reCAPTCHA users. SID Google has set a number of cookies on each page that includes Google’s reCAPTCHA. Although we have no control over the cookies set by Google, they appear to include a mixture of pieces of information to measure the number and behavior of Google reCAPTCHA users. SIDCC Security cookie to protect user data from unauthorized access. SSID Google has set a number of cookies on each page that includes Google’s reCAPTCHA. Although we have no control over the cookies set by Google, they appear to include a mixture of pieces of information to measure the number and behavior of Google reCAPTCHA users. __utmx This cookie is associated with Google’s website optimization tool, a tool designed to help website owners improve their websites. It is used to distinguish between two types of web page that may be presented to a visitor as part of an A/B split test. This helps web owners determine which version of a page performs better, therefore helping to improve the site. __utmxx This cookie is associated with Google’s website optimization tool, a tool designed to help website owners improve their websites. It is used to distinguish between two types of web page that may be presented to a visitor as part of an A/B split test. This helps web owners determine which version of a page performs better, therefore helping to improve the site.

Source