PULSE NAME
APT-Q-27 Targets Web3 Support Teams with Multi-Stage Malware
WHITE SOC__critical43 2026-04-02 Modified: 2026-05-02
22
IOCs
MEDIUM VOLUME
Indicators of Compromise (22)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 01c6de852ab12ad7c9dae8aa5041049f 2026-04-02
FileHash-MD5 4e8daac6345125088a176a00ca9ede5f MD5 of e662938c7ca08b433a5ed871962cc9f7be477640 2026-04-02
FileHash-MD5 e329be9f69ac44c388831184de54df7d MD5 of da410379906d769d1d4be47b3b351f8e93f761f0 2026-04-02
FileHash-MD5 f042379b99cc9b701cbf1aaceb887710 2026-04-02
FileHash-SHA1 4b1f4ac4c1e033a33ddf90e95c4dffa19bd2e2d6 2026-04-02
FileHash-SHA1 677717d1c5840b6bef955c58658e9904ae70c9e7 2026-04-02
FileHash-SHA1 da410379906d769d1d4be47b3b351f8e93f761f0 2026-04-02
FileHash-SHA1 e662938c7ca08b433a5ed871962cc9f7be477640 2026-04-02
FileHash-SHA256 1a80f721ab125b88e5baf77dd2bf01be92ff5299665356621b21306a71c86672 SHA256 of da410379906d769d1d4be47b3b351f8e93f761f0 2026-04-02
FileHash-SHA256 2c35150e0d2da30b689d25f48e4039e35f48501afd2c486bdaf81b6df228104d 2026-04-02
FileHash-SHA256 c89f1c5d54c1c954b91783037898ce8b67a3057b5b43213210c34d81b10387b8 2026-04-02
FileHash-SHA256 d6b96b68057e39d61ea0084885ef6541121d83c31b26b35b2f435bb7f8b59932 SHA256 of e662938c7ca08b433a5ed871962cc9f7be477640 2026-04-02
URL https://awsgouu.s3.ap-southeast-1.amazonaws.com/crashreport.dll 2026-04-02
URL https://awsgouu.s3.ap-southeast-1.amazonaws.com/image.jpg 2026-04-02
URL https://awsgouu.s3.ap-southeast-1.amazonaws.com/msvcp140.dll 2026-04-02
URL https://awsgouu.s3.ap-southeast-1.amazonaws.com/updat.exe 2026-04-02
URL https://awsgouu.s3.ap-southeast-1.amazonaws.com/vcruntime140.dll 2026-04-02
URL https://awsgouu.s3.ap-southeast-1.amazonaws.com/y.txt 2026-04-02
URL https://awsgouu.s3.ap-southeast-1.amazonaws.com/yyext.log 2026-04-02
URL https://myvideomanagerentry.s3.ap-northeast-1.amazonaws.com/A.txt 2026-04-02
hostname awsgouu.s3.ap-southeast-1.amazonaws.com 2026-04-02
hostname myvideomanagerentry.s3.ap-northeast-1.amazonaws.com 2026-04-02