PULSE NAME
Attackers Create Elaborate Crypto Trading Scheme to Install Malware
WHITE Lazarus Group AlienVault 2019-10-14 Modified: 2019-10-14
8
IOCs
LOW VOLUME
Attackers have created an elaborate scheme to distribute a cryptocurrency trading program that installs a backdoor on a victim's Mac or Windows PC. This is likely linked to the North Korean "Lazarus" attackers
Indicators of Compromise (3 / 8 total)
All FileHash-SHA256 domain URL FileHash-MD5 FileHash-SHA1
TYPEINDICATORDESCRIPTIONCREATED
FileHash-SHA256 9bf8e8ac82b8f7c3707eb12e77f94cd0e06a972658610d136993235cbfa53641 2019-10-14
FileHash-SHA256 4d6078fc1ea6d3cd65c3ceabf65961689c5bc2d81f18c55b859211a60c141806 2019-10-14
FileHash-SHA256 07c38ca1e0370421f74c949507fc0d21f4cfcb5866a4f9c0751aefa0d6e97542 2019-10-14