PULSE NAME
Operation Tejas: A dying elephant curled up in the Kunlun Mountains
WHITE APT-Q-41 AlienVault 2022-06-08 Modified: 2022-07-08
75
IOCs
HIGH VOLUME
Qi Anxin Threat Intelligence Center once published the article named "Operation Magichm: A Brief Talk on the Manlinghua Organization's CHM File Delivery and Follow-up Operations" in 2021 . In addition to the new attack methods and samples used in the latest attack in April, the linked article will also provide an overview of the recent phishing activities of the Maya Elephant (APT-Q-41) and the basics of the Diamondback (APT-Q-39) this year.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
ArtraDownloader MuuyDownLoader
Indicators of Compromise (22 / 75 total)
All domain CVE FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 058cff1c34118fe46a641286b4cdfc92 2022-06-08
FileHash-MD5 3268b2aeb16be4bb9b953257af74b805 2022-06-08
FileHash-MD5 4069d394ff1e55fa9dde2f81567d681e 2022-06-08
FileHash-MD5 54ea5083ad67b15a249e07bb1a4fb3e0 2022-06-08
FileHash-MD5 5be886f7a6cbc23a0a00bdb2153f435b 2022-06-08
FileHash-MD5 660a678cd7202475cf0d2c48b4b52bab 2022-06-08
FileHash-MD5 6d6e144c182a0f0e43593e05dd990239 2022-06-08
FileHash-MD5 6e4b4eb701f3410ebfb5925db32b25dc 2022-06-08
FileHash-MD5 71e1cfb5e5a515cea2c3537b78325abf 2022-06-08
FileHash-MD5 9790ef74625b4f9b67bc64aa7eff0e4b 2022-06-08
FileHash-MD5 a16d12819fc03a3b9f0b63786f26a4c7 2022-06-08
FileHash-MD5 a70cb6a15e03284d59c0ae4e33324448 2022-06-08
FileHash-MD5 a9ed771d128a6ccf67097b6ecd136885 2022-06-08
FileHash-MD5 ade9a4ee3acbb0e6b42fb57f118dbd6b 2022-06-08
FileHash-MD5 b63e9710cb67f4a649a83929ed9f0322 2022-06-08
FileHash-MD5 c44567e2b4b3c92dc871159481894917 2022-06-08
FileHash-MD5 c66a35a9c1778ab162e3718afbd8c3ac 2022-06-08
FileHash-MD5 dbf780ef27a421211c69698837986738 2022-06-08
FileHash-MD5 dc269726626de55214f6f49f39ebc33a 2022-06-08
FileHash-MD5 f505ef12881fa57fcdd12ac59cf55fd8 2022-06-08
FileHash-MD5 f69fa2d07e1ad0625af8a5ec44db327d 2022-06-08
FileHash-MD5 ff2905648780aea95f578d11def872c4 2022-06-08