고려 대학교 하고 관련이 있을것 같은 김수키(Kimsuky) 만든 악성코드(2024.9.1)
2024-09-05 • Sakai • Kimsuky malware possibly related to Korea University •
The report analyzes a Kimsuky malware sample that the author assesses may be related to Korea University targeting. The source provides SHA-1 and SHA-256 hashes and shows heavily obfuscated command content associated with the sample. Because the available evidence is sample-centric, the strongest CTI value is malware tracking and lure-context awareness rather than confirmed victim attribution.
Indicators of Compromise
| Type | Value | First Seen | Last Seen |
|---|---|---|---|
| HASH | 50f580199250c5b9ca7e9a3b4ccea5d… | 2024-09-05 | 2024-09-05 |
| HASH | bd017c642fcd0b46fb1201f22d395ed… | 2024-09-05 | 2024-09-05 |
| HASH | 9110aeca8e78ede7b913ac54b4332b00 | 2024-09-05 | 2024-09-05 |
| URL | http://hondes.getenjoyment.net/… | 2023-03-10 | 2024-09-05 |
| DOMAIN | hondes.getenjoyment.net | 2023-03-10 | 2024-09-05 |
Related Actors
Related Reports
Shares tags: Kimsuky, LNK • Same author: Sakai • Published within a month
Shares tags: Kimsuky, LNK • Same author: Sakai • Published within a month
Shares tags: Kimsuky, LNK • Same author: Sakai • Published within a month
Shares tags: Kimsuky, LNK • Same author: Sakai • Published within a month
Shares tags: Kimsuky, LNK • Same author: Sakai
Shares tags: Kimsuky, LNK • Same author: Sakai