강연의뢰서로 위장한 Kimsuky 그룹 악성코드(MSC, HWP)
2024-09-18 • Ahnlab • Kimsuky malware disguised as a lecture request (MSC, HWP) •
AhnLab reports a Kimsuky-linked spearphishing case that used lecture-request lures with HWP documents and MSC files to download additional malicious components. The source says the malware stores attacker-controlled scripts on the victim PC for repeated execution, enabling possible data theft or follow-on payload delivery. It also notes infrastructure patterns similar to a previous Kimsuky batch-file campaign and describes the use of Google Drive file titles to carry encoded malicious commands.
Related Actors
Related Reports
Shares tags: Kimsuky, MSC • Same author: Ahnlab
Shares tags: Kimsuky, MSC • Published within a week
Shares tags: Kimsuky, MSC • Published within a week
2024-09-13 •
80% Match
게임 링크 단축 및 수익 창출 LootLabs 으로 위장한것으로 추정 되는 김수키(Kimsuky) 악성코드-Twitch x Loot Lab Event-2025.msc(2024.9.9)
Sakai
Shares tags: Kimsuky, MSC • Published within a week
Shares tags: Kimsuky, MSC • Published within a month
Shares tags: Kimsuky, MSC • Published within a month