김수키(Kimsuky) 에서 만든 msc 파일 로 위장하는 악성코드-Skibidi Boilet Master.msc(2024.8.16)

2024-08-19 Sakai Malware Created by Kimsuky Disguised as an MSC File - Skibidi Boilet Master.msc (2024.8.16)

https://wezard4u.tistory.com/429256

Thumbnail for 김수키(Kimsuky) 에서 만든 msc 파일 로 위장하는 악성코드-Skibidi Boilet Master.msc(2024.8.16)

A Kimsuky-attributed analysis describes a malicious Microsoft Management Console file named Skibidi Boilet Master.msc that masquerades as a legitimate Windows management artifact. The source provides hashes for the sample and shows embedded MMC visual attributes and script content used to execute attacker-controlled commands. The activity is relevant to defenders tracking North Korean phishing and malware delivery because it demonstrates continued abuse of familiar Windows file formats and lure documents to run PowerShell or other payload logic on victim systems.

Indicators of Compromise

Type Value First Seen Last Seen
DOMAIN 0x0.st 2024-08-19 2024-09-10
HASH e25027c2a3b9e45f0551604453e6f865 2024-08-19 2024-08-19
HASH cb2ca952b8d4a70f9c8cd00265a30d0… 2024-08-19 2024-08-19
HASH b13201957eec1248b3d91f2fd5a0b5d… 2024-08-19 2024-08-19
URL https://0x0.st/XO5m.txt 2024-08-19 2024-08-19

Related Actors

Related Reports

« Back