📃Title: Lotus Blossom Continues ASEAN Targeting
📅Date: 2018-02-13
🔗References:

🔖Rectifyq Taxonomies:

🔖MISP Galaxies:

  • threat-actor= LOTUS-PANDA
  • region=“035 - South-eastern Asia”
  • mitre-attack-pattern=[]

MISP event uuid: 26383d24-134d-4ea4-a8f3-df7d9ceb322a

Indicator of Compromise (IoCs)

type,value,comment
md5, f12fc711529b48bcef52c5ca0a52335a, 'Malicious RTF Dropper'
md5, cd36bbd7f949cf017edba0e6aaadf28c, 'NavShExt.dll'

Full IOCs available in Rectifyq’s MISP