한국 대상 최신 APT 공격, 작전명 미스터리 베이비(Operation Mystery Baby) 주의!
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | 744db289-b1a3-41a4-9646-a6ccc9ffa83d |
Fingerprint | 44ea3bdca951c2b4 |
Analysis status | DONE |
Considered CTI value | 1 |
Text language | |
Published | Nov. 2, 2018, 1:44 a.m. |
Added to db | Jan. 30, 2023, 4:32 p.m. |
Last updated | Nov. 18, 2024, 1:38 a.m. |
Headline | |
Title | 한국 대상 최신 APT 공격, 작전명 미스터리 베이비(Operation Mystery Baby) 주의! |
Detected Hints/Tags/Attributes | 18/1/13 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | http://blog.alyac.co.kr/1963 |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 375 | cve-2017-11882 |
|
Details | Domain | 13 | malware.lu |
|
Details | Domain | 2 | update.ca |
|
Details | Domain | 69 | trojan.android |
|
Details | File | 5 | update.tmp |
|
Details | File | 3 | store.sys |
|
Details | File | 3 | sys32.msi |
|
Details | File | 2 | sys64.msi |
|
Details | File | 2 | micr.tmp |
|
Details | File | 3 | 'ttmp.log |
|
Details | File | 7 | ttmp.log |
|
Details | File | 5 | exe.dll |
|
Details | File | 2127 | cmd.exe |