PowerPoint 簡報
Common Information
Type | Value |
---|---|
UUID | d172a43d-3069-4a64-b6a0-372bf0c21b6a |
Fingerprint | cfb60687f6f4c954dbbe0ab6a4546002eef469640de0bb9ae8ec058eb1bb49d7 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | April 25, 2021, 3:32 p.m. |
Added to db | April 14, 2024, 1:13 a.m. |
Last updated | Aug. 31, 2024, 1:41 a.m. |
Headline | PowerPoint 簡報 |
Title | PowerPoint 簡報 |
Detected Hints/Tags/Attributes | 79/2/18 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 4128 | github.com |
|
Details | Domain | 18 | teamt5.org |
|
Details | File | 1 | aaclient.dll |
|
Details | File | 4 | wpsupdate.exe |
|
Details | File | 748 | kernel32.dll |
|
Details | File | 291 | user32.dll |
|
Details | File | 3 | l.gz |
|
Details | File | 3 | yh.gz |
|
Details | Github username | 1 | s4r1n |
|
Details | Github username | 1 | fancysauced |
|
Details | Github username | 1 | aragorntseng |
|
Details | Threat Actor Identifier - APT | 297 | APT27 |
|
Details | Threat Actor Identifier - APT | 132 | APT32 |
|
Details | Threat Actor Identifier - APT | 277 | APT37 |
|
Details | Threat Actor Identifier - APT | 278 | APT10 |
|
Details | Url | 1 | https://github.com/s4r1n/alternativeshellcodeexec |
|
Details | Url | 1 | https://github.com/fancysauced/phantom-dll-hollower-poc |
|
Details | Url | 1 | https://github.com/aragorntseng/mem2img |