Trend graph by period


Related keyword cloud
Top 100

# Trend Count Comparison
1Looks 1 ▲ new
2possible 1 ▲ new
3Ukraine 1 ▲ new
4APT 1 ▼ -1 (-100%)
5case 1 ▲ new
6target 1 - 0 (0%)
7Ucraina 1 ▲ new
8Campaign 1 ▼ -1 (-100%)
Special keyword group
Top 5

Malware Type
Malware Type

This is the type of malware that is becoming an issue.


No data.

Attacker & Actors
Attacker & Actors

The status of the attacker or attack group being issued.


No data.

Attack technique
Technique

This is an attack technique that is becoming an issue.


Keyword Average Label
APT
1 (50%)
Campaign
1 (50%)
Country & Company
Country & Company

This is a country or company that is an issue.


Keyword Average Label
Ukraine
1 (50%)
Ucraina
1 (50%)

Additional information

Level Description
danger File has been identified by 56 AntiVirus engines on VirusTotal as malicious
notice Creates executable files on the filesystem
notice Drops an executable to the user AppData folder
notice The binary likely contains encrypted or compressed data indicative of a packer
info The executable contains unknown PE section names indicative of a packer (could be a false positive)
info The file contains an unknown PE resource name possibly indicative of a packer
info This executable has a PDB path
No Category URL CC ASN Co Date
1c2http://00701111.000webhostapp.com/wp-extra/show.phpUS US...2023.09.18
No URL CC ASN Co Reporter Date
1https://jpkinki.com/fjugm
APT Kimsuky
US USCLOUDFLARENETIdaNotPro2025.03.26
2https://www.dropbox.com/scl/fi/cnfhxf0nc3qxfklznh5na/zzJG_2.zip?rlkey=7t1et81enar4uvbb7nnk58m9b&st=2...
APT Kimsuky zip
US USDROPBOXabuse_ch2025.02.12
3https://www.dropbox.com/scl/fi/icvpzbx4vn6lcthva168z/zzJG.zip?rlkey=kntc36792grkm64xriqputbdq&st=px5...
APT Kimsuky
US USDROPBOXJAMESWT_MHT2025.02.05
4https://liuyi.neectar.info/hsdverd_3ed5d/mdswsourt_4rfs
APT decoy Patchwork PDF
GB GBabuse_ch2025.01.22
5https://liuyi.neectar.info/lksderdd_4dferd/jhdfer3s_jh3de
APT exe Patchwork rustystealer
GB GBabuse_ch2025.01.22
View only the last 5
Beta Service, If you select keyword, you can check detailed information.