12
Techniques
7
Toolsets
0
CVEs Referenced
0
KEV Entries
About admin@338

admin@338 is a China-based cyber threat group. It has previously used newsworthy events as lures to deliver malware and has primarily targeted organizations involved in financial, economic, and trade policy, typically using publicly available RATs such as PoisonIvy, as well as some non-public backdoors.

View MITRE record ↗

Toolsets (7)
🐛
Malware · Windows
🐛
LOWBALL S0042
Malware · Windows
🐛
PoisonIvy S0012
Malware · Windows
🔧
Net S0039
Tool · Windows
🔧
Tool
🔧
ipconfig S0100
Tool
🔧
netstat S0104
Tool
↑