Xctdoor
AlienVault
· Published 21/12/2025 05:41 · Modified 21/12/2025 05:41
Essential information
- Confidence
- 100/100
- Is family
- No
- Published
- 21/12/2025 05:41
- Modified
- 21/12/2025 05:41
- Revoked
- No
- Author / Source
- AlienVault
- Related entities
- 17 attack patterns (mitre), 1 intrusion sets (apt), 2 sectors, 1 countries, 8 indicators, 1 reports
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (17)
-
T1189 usesDrive-by Compromise
-
T1573 usesEncrypted Channel
-
T1056 usesInput Capture
-
T1036 usesMasquerading
-
T1055 usesProcess Injection
-
T1005 usesData from Local System
-
T1027 usesObfuscated Files or Information
-
T1105 usesIngress Tool Transfer
-
T1083 usesFile and Directory Discovery
-
T1064 usesScripting
-
T1041 usesExfiltration Over C2 Channel
-
T1133 usesExternal Remote Services
Intrusion sets (APT) (1)
-
The MITRE Corporation Confidence 100
[Andariel](https://attack.mitre.org/groups/G0138) is a North Korean state-sponsored threat group that has been active since at least 2009. [Andariel](https://attack.mitre.org/groups/G0138) has primarily focused its operations--which have included destructive attacks--against South Korean …
First seen 01/01/1970 · Last seen 16/11/5138 Published 16/12/2025 19:39 · Modified 27/03/2026 01:13
Sectors (2)
- Manufacturing targets
- Defense targets
Countries (1)
- Korea, Democratic People's Republic of targets
Indicators (8)
-
934622b6a764a3b4f2a0049c62e66b9ad65a7987c83c37879c6772a61760707eindicates -
3d4b90f520ed82ef886f0a38e1a621ead2d42fa3ef91a6083a484f3e361028e2indicates -
9974b4befa2906a6925e786c47651319ed70e3b9fe1f76e25ae0ef81f6555996indicates -
www.jikji.pe.krindicates -
http://www.jikji.pe.kr/xe/files/attach/binaries/102/663/image.gifindicates -
3e7715ac57003f8a80119ab348a7a7b260afde749cad3c56bd2d9ab931288f92indicates -
beebeep.infoindicates -
http://beebeep.info/index.phpindicates
Reports (1)
-
17 MITREs 3 Malwares 9 Observables 1 APTPublished 01/07/2024 10:23 · Modified 01/07/2024 10:46