Operation DreamJob
Essential information
- Confidence
- 100/100
- Is family
- No
- Published
- 20/12/2025 19:38
- Modified
- 29/05/2026 12:20
- Revoked
- No
- Author / Source
- AlienVault
- Related entities
- 14 attack patterns (mitre), 1 intrusion sets (apt), 5 sectors, 4 countries, 39 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (14)
-
Multi-Stage Channels usesT1104 MITRE
-
T1569 usesSystem Services MITRE
Intrusion sets (APT) (1)
-
Lazarus usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 ·
Sectors (5)
-
Technology targets
-
Universities targets
-
Defense targets
-
Road transport targets
-
Government targets
Countries (4)
-
Cyprus targets
-
United States of America targets
-
Hong Kong targets
-
Taiwan targets
Indicators (39)
-
stix 100/100 Revoked
SHA256 of b23b0de308e55cbf14179d59adee5fcb
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
SHA256 of 9fd35bad075c2c70678c65c788b91bc3 SHA256 of 9fd35bad075c2c70678c65c788b91bc3
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
SHA256 of 0071b20d27a24ae1e474145b8efc9718
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
SHA256 of b3a8c88297daecdb9b0ac54a3c107797
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
LZMA SHA256 of d1c652b4192857cb08907f0ba1790976
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
TEL:Trojan:Win32/MeterLoad SHA256 of 92657b98c2b4ee4e8fa1b83921003c74
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
CoreDn SHA256 of 265f407a157ab0ed017dd18cae0352ae
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
LZMA SHA256 of 78d42cedb0c012c62ef5be620c200d43 SHA256 of 78d42cedb0c012c62ef5be620c200d43
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
SLF:SCPT:OffRelAttachedTemplateHttp.A SHA256 of e7aa0237fc3db67a96ebd877806a2c88
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
Zeppelin_37 SHA256 of 84cd4d896748e2d52e2e22d1a4b9ee46
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
SHA256 of f6d6f3580160cd29b285edf7d0c647ce
· Valid until 15/07/2024 · Source: AlienVault -
stix 100/100 Revoked
Win64:Evo-gen\ [Susp] SHA256 of ca6658852480c70118feba12eb1be880 SHA256 of ca6658852480c70118feba12eb1be880
· Valid until 15/07/2024 · Source: AlienVault