Threat Bulletin: Weaponized Software Targets Chinese-Speaking Organizations
Tags
cmtmf-attack-pattern: | Masquerading |
country: | China Hong Kong Taiwan |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 Masquerading - T1655 Phishing - T1660 Phishing - T1566 Server - T1583.004 Server - T1584.004 Software - T1592.002 Masquerading - T1036 Masquerading |
Common Information
Type | Value |
---|---|
UUID | e9abd4ea-1b57-4f0b-bb93-5a0d775445a3 |
Fingerprint | bc309b09c9bd0743 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Jan. 16, 2025, 11:45 p.m. |
Added to db | Jan. 17, 2025, 1:15 a.m. |
Last updated | Feb. 11, 2025, 5:47 p.m. |
Headline | Threat Bulletin: Weaponized Software Targets Chinese-Speaking Organizations |
Title | Threat Bulletin: Weaponized Software Targets Chinese-Speaking Organizations |
Detected Hints/Tags/Attributes | 43/4/62 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 158 | ✔ | Malware Analysis, News and Indicators - Latest topics | https://malware.news/latest.rss | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 5 | all.zip |
|
Details | File | 5 | all.zip |
|
Details | File | 47 | libcef.dll |
|
Details | File | 5 | down.exe |
|
Details | File | 4 | aut.png |
|
Details | File | 6 | view.png |
|
Details | File | 627 | ntdll.dll |
|
Details | File | 8 | uninst.exe |
|
Details | File | 22 | colorcpl.exe |
|
Details | sha256 | 4 | 08dad42da5aba6ef48fca27c783f78f06ab9ea7a933420e4b6b21e12e550dd7d |
|
Details | sha256 | 4 | 33bc111238a0c6f10f6fe3288b5d4efe246c20efd8d85b4fe88f7d602d70738e |
|
Details | sha256 | 4 | 50a64e97c6a5417023f3561f33291b448ce830a4d99c40356af67301c8fa7523 |
|
Details | sha256 | 4 | 6d4dd4334791c91bb09e7a91dd5c450b2c6e3348a5586de011c54ce3f473f619 |
|
Details | sha256 | 4 | 76fc76dc651c3cc9d766a6ad8a90f605326463bc4cb2f8f053d44dfbc913beee |
|
Details | sha256 | 4 | ad23f5c9bab137dc24343fc410f7587885aab6772dee5e75a216ed579c6ee420 |
|
Details | sha256 | 4 | c497506fe2df57c39fcf92398f4864ca4bfcb1a6f2f80c3c520166bc61882855 |
|
Details | sha256 | 4 | e49b085f5484531395b5a7903f004b2a02a2b4ebfa46116d1a665ba881b1f528 |
|
Details | sha256 | 4 | c636120749b49f47fc8d42409ead6c51ea44bc40c815370997ca63f48acdf002 |
|
Details | sha256 | 4 | 79acdca5247ca9719f2f3a34c7942cd60b209f7b616efa5dd81e6656a8baf9a5 |
|
Details | sha256 | 4 | 70facc8ad5db172e235b4cc720a0edaedd4470b8a6ec5da8dee2758f4a1aafef |
|
Details | sha256 | 4 | e9e4751c88d3a1a4bfdd5d07bb35636787b0d6fbf68b17642d3fe03cbe5ebf70 |
|
Details | sha256 | 4 | de8a0da702a491f610b9e85050d8641cadf4ed84edf4d151f94335b0d78d6636 |
|
Details | sha256 | 4 | 6d2a4d9e2fc6e4dac2c426851b4bdf86dd63a5515d8d853e622a0bc01d250ce9 |
|
Details | sha256 | 4 | 4a68bdfa3e31a8c063bbf94469160eb7998a556027d5ad33f37c347a71c2d3a4 |
|
Details | sha256 | 4 | 7c31c4d0308fb1d67f6af48a76138a9db19f494c1e9a12debdcca7382ad5418c |
|
Details | sha256 | 4 | 5f9a5ad43a9f79976cd7014ce072429ef2edbae872b4226372cfb07d8a86b8a5 |
|
Details | sha256 | 4 | 3ac3ca18142a935608cb0d2c8d6421ebb9abc30bce93f094447b9c3f63fe791b |
|
Details | sha256 | 4 | 9d97f3f55bc647911e14a36c83f263e91662cf9d13a2fc3ec7c92dedb8977d37 |
|
Details | sha256 | 4 | c070749f95aeeefcd1c3a875c1b8e77b57cad0c8338436af9a3c9e1323fd4e11 |
|
Details | sha256 | 4 | 7eaed6fa867875119c3ebb40aa24716d91fdbccb2106fa4708ff0637920a920c |
|
Details | sha256 | 4 | fa26722e99763a29af160fae64183a47a57362b666753624b78e954c8cde0525 |
|
Details | sha256 | 4 | 9aa51d1c82fdbc8f0f27340180bd40faa7e76b8ac6d204b2d3548cfd0897d805 |
|
Details | sha256 | 4 | 58416315c61ed5cb2c754244ed5c081963dabf3e698b04226a00f978cd913e84 |
|
Details | sha256 | 4 | f2f96e5ac1b4bd6cac49c71ca2010dcbe5751757483520cfc7dddf4fb7186044 |
|
Details | sha256 | 4 | 9aea0fdfead2e956bc0b4574c2b4cb2855dd9df6a5fd61d350f3285d249adfca |
|
Details | sha256 | 4 | 46af73560cafff5c8bbc16980d01641af0de3b689bc248dfb52afcf3a8a76a55 |
|
Details | sha256 | 4 | 7bff2404c2816c4e1576d449820f01e3f46e7c972beb1843e3b8da2e065f8dc3 |
|
Details | sha256 | 4 | 94ff4679dd5aec7874354c14132701ecdfbbb558c6011e4952d13bf843255529 |
|
Details | sha256 | 4 | ae6d88ea99e530f778ee6088862b50dfb6e8bb45857211e9105428c57c2a7b4a |
|
Details | sha256 | 4 | c5d5054047a12efc68a67abd8f15069a853dd09800cd39d68df5a27702b45334 |
|
Details | sha256 | 4 | a97371df7d51fe0aee1d54b5b233a1713f69224802b1da35337a3041788990e6 |
|
Details | sha256 | 4 | 4b6bf40dc331c89e416ef012a6dc4f55c83136197be7115246b42e4f7a828baa |
|
Details | sha256 | 4 | 30147b6691e5bc1a15c76cebf81b2de77d9099e8200b6ed9742c6e3b36505f34 |
|
Details | sha256 | 4 | 9bd53057c8905d508374698e2595301f0be1529ec4ebfa71c09ad0c01a562982 |
|
Details | sha256 | 4 | 4d64c2d1ae0de0f3066a6c020ab7aa5a9dd487c0cf1ff1ca2e93d98ff30e039f |
|
Details | sha256 | 4 | 99fb7a40dbf6a042bcb77f67a5a76fe03ec3c6820ac5e15cb009795d545152ea |
|
Details | sha256 | 4 | d9e939f904a1cddf5fb8ffba14acbfe227ed5dfc4990b52a44d4dfd0baa6de4e |
|
Details | sha256 | 4 | 0b33f08bc2917c4825c053754fc88e16b35d1a8fff4135595b265a4c6f850250 |
|
Details | sha256 | 4 | cd347b9f558cf024df1dbb62ed7a0d72a2edc04b1330058cfa1baf4fc3894e03 |
|
Details | sha256 | 4 | 8aa28f35dbafc18a37b07fd15bb599e3c8de5b692117f1c6fd491bd03028a423 |
|
Details | sha256 | 4 | d51db234d0236cd0dbfcf13adc33387f10920011537815d188eff012872e30be |
|
Details | sha256 | 4 | d0ce85ec31053478c67e4f53ca2ef9b7b1f0fda74621c9c7c8c1612772ca778c |
|
Details | sha256 | 4 | 504d7714419931f80b734e212a9431ec98887c56ade8966c4d7cae58b28d49ca |
|
Details | sha256 | 4 | 16bb3968e1112b63fef8a4e7bda9d021dfef6fd1955fdfa677545535a14a65b4 |
|
Details | sha256 | 4 | 659ede632d3bfc28d143c144fdba34d08b21c4f97ce6c9dc1fcd4d2bf5cc25e3 |
|
Details | sha256 | 4 | 463c9704fb009cd13e0ef50fa7d5035aa5f35b4841fe75ecab5c4a276601f837 |
|
Details | sha256 | 4 | 3fc35cab1272f769af309cb46375e21680f13d629181c7646cb0cf2c9b2e72e7 |
|
Details | sha256 | 4 | 517b43bf057877727387316d8538dc07599856eb428d43f512e89964a5dfb331 |
|
Details | sha256 | 4 | e54ce9939679c691dc5719e309a8d541183b6672269fd61013109ef0d8509b1e |
|
Details | IPv4 | 4 | 156.247.33.53 |
|
Details | IPv4 | 4 | 45.195.148.107 |
|
Details | Windows Registry Key | 2 | HKEY_CURRENT_USER\Software\DICKEXEPATH |