Distribution of Malware Using Word File Disguised as Coin Company Recruitment Table Document - ASEC BLOG
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | 88c26edf-cd23-4839-8090-7bc1a2d840aa |
Fingerprint | a486bb3b88bbe643 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | May 14, 2020, 4:23 p.m. |
Added to db | Sept. 11, 2022, 4:59 p.m. |
Last updated | Dec. 21, 2024, 2:18 a.m. |
Headline | Distribution of Malware Using Word File Disguised as Coin Company Recruitment Table Document |
Title | Distribution of Malware Using Word File Disguised as Coin Company Recruitment Table Document - ASEC BLOG |
Detected Hints/Tags/Attributes | 25/2/10 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://asec.ahnlab.com/en/17486/ |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | han.naver2020.me |
|
Details | File | 10 | details.docx |
|
Details | File | 1 | reorganization.docx |
|
Details | File | 4 | template.docx |
|
Details | File | 1 | office-word.dot |
|
Details | File | 5 | msedgeupdate.dll |
|
Details | File | 19 | microsoftedgeupdate.exe |
|
Details | File | 27 | agent.c4 |
|
Details | Url | 1 | https://products-msofficeclient.office.microsoft.office-microsoft.cc/officedocument/office-word.dotm |
|
Details | Url | 1 | https://han.naver2020.me |