APT_NK_APT37_LNK_Jul22_1

Rule Info

Name
APT_NK_APT37_LNK_Jul22_1
Author
Florian Roth
Description
Detects malicious link files as used by APT34
Score
95
Date
2022-07-27
Minimum Yara
1.7
Rule Hash
8e78616fe2a3c4f59b46f2665e7bfc9a
Tags
['T1547_009', 'FILE', 'G0049', 'MIDDLE_EAST', 'NK', 'T1210', 'G0067', 'G0057', 'APT']
Required Modules
[]

Antivirus Verdicts

Rating
Number of Samples
Malicious (>= 10 engines)
1
Suspicious (< 10 engines)
0
Clean (0 engines)
0

Rule Matches

Timestamp
Positives
Total
Hash
VT
2023-02-15 08:58:02
34
61
5fce9f27326549cc6091ba1f806e7c161878a2642411a941ba484b0c1c7adb8f

Rule Matches per Month (last 24 months)