김수키(Kimsuky) 에서 만든 msc 파일 로 위장하는 악성코드-Skibidi Boilet Master.msc(2024.8.16)
2024-08-19 • Sakai • Malware Created by Kimsuky Disguised as an MSC File - Skibidi Boilet Master.msc (2024.8.16) •
A Kimsuky-attributed analysis describes a malicious Microsoft Management Console file named Skibidi Boilet Master.msc that masquerades as a legitimate Windows management artifact. The source provides hashes for the sample and shows embedded MMC visual attributes and script content used to execute attacker-controlled commands. The activity is relevant to defenders tracking North Korean phishing and malware delivery because it demonstrates continued abuse of familiar Windows file formats and lure documents to run PowerShell or other payload logic on victim systems.
Indicators of Compromise
| Type | Value | First Seen | Last Seen |
|---|---|---|---|
| DOMAIN | 0x0.st | 2024-08-19 | 2024-09-10 |
| HASH | e25027c2a3b9e45f0551604453e6f865 | 2024-08-19 | 2024-08-19 |
| HASH | cb2ca952b8d4a70f9c8cd00265a30d0… | 2024-08-19 | 2024-08-19 |
| HASH | b13201957eec1248b3d91f2fd5a0b5d… | 2024-08-19 | 2024-08-19 |
| URL | https://0x0.st/XO5m.txt | 2024-08-19 | 2024-08-19 |