Shares tag: TCO!Stream • Shares 1 IOC • Same author: Ahnlab
자산 관리 솔루션(TCO!Stream) 취약점 주의 및 업데이트 권고
2023-03-17 • Ahnlab • Asset Management Solution (TCO!Stream) Vulnerability Caution and Update Recommendation •
AhnLab reported a remote code execution vulnerability in MLsoft’s TCO!Stream asset-management solution, affecting versions 8.0.22.1115 and earlier. During incident response, AhnLab found attackers abusing the resident client process to execute code remotely across multiple PCs and install a backdoor. The advisory recommends updating to version 8.0.23.215 or later and lists Trojan/Win.Agent.C5356408 detection plus the MD5 e7c9bf8bf075487a2d91e0561b86d6f5 as a representative indicator.
Indicators of Compromise
| Type | Value | First Seen | Last Seen |
|---|---|---|---|
| DOMAIN | mlsoft.com | 2023-03-17 | 2024-02-21 |
| HASH | e7c9bf8bf075487a2d91e0561b86d6f5 | 2023-03-17 | 2023-06-14 |
| URL | http://mlsoft.com/bbs/board.php… | 2023-03-17 | 2023-03-17 |
Related Reports
Shares tag: TCO!Stream • Shares 1 IOC • Same author: Ahnlab
Shares tag: TCO!Stream • Published within a week