SYMBOLCOMMON_NAMEaka. SYNONYMS
ps1.unidentified_001 (Back to overview)

Unidentified PS 001

Actor(s): APT-C-12


Recon and exfiltration script, dropped from a LNK file. Attributed to APT-C-12.

References
2020-02-10Bit of Hex BlogMatt
Suspected Sapphire Mushroom (APT-C-12) malicious LNK files
Unidentified PS 001 APT-C-12

There is no Yara-Signature yet.