Skip to content

[Intel]: https://mp-weixin-qq-com.translate.goog/s/pd6fUs5TLdBtwUHauclDOQ?_x_tr_sl=auto&_x_tr_tl=en&_x_tr_hl=en&_x_tr_pto=wapp #588

@timb-machine

Description

@timb-machine

Area

Malware reports

Parent threat

Persistence, Defense Evasion, Command and Control

Finding

https://mp-weixin-qq-com.translate.goog/s/pd6fUs5TLdBtwUHauclDOQ?_x_tr_sl=auto&_x_tr_tl=en&_x_tr_hl=en&_x_tr_pto=wapp

Industry reference

attack:T1027:Obfuscated Files or Information

Malware reference

caja
wltm

Actor reference

No response

Component

Linux

Scenario

No response