ThaiCERT    ETDA    MDES
Report
Search
Home > List all groups > List all tools > List all groups using tool Minzen

Threat Group Cards: A Threat Actor Encyclopedia

Permanent link Tool: Minzen

NamesMinzen
XXMM
Wali
ShadowWali
ShadowWalker
CategoryMalware
TypeLoader
Description(Palo Alto) Minzen is a modular malware that has both 32-bit and 64-bit components in its resource section or configuration data in its body.
Information<https://unit42.paloaltonetworks.com/unit42-tick-group-continues-attacks/>
<http://blog.trendmicro.com/trendlabs-security-intelligence/redbaldknight-bronze-butler-daserf-backdoor-now-using-steganography/>
<https://jsac.jpcert.or.jp/archive/2019/pdf/JSAC2019_8_nakatsuru_en.pdf>
<https://www.secureworks.com/research/bronze-butler-targets-japanese-businesses>
Malpedia<https://malpedia.caad.fkie.fraunhofer.de/details/win.xxmm>
AlienVault OTX<https://otx.alienvault.com/browse/pulses?q=tag:Minzen>

Last change to this tool card: 14 May 2020

Download this tool card in JSON format

Previous: MiniDuke
Next: MirageFox

All groups using tool Minzen

ChangedNameCountryObserved

APT groups

 Bronze Butler, Tick, RedBaldNight, Stalker PandaChina2010-Apr 2021X

1 group listed (1 APT, 0 other, 0 unknown)

Thailand Computer Emergency Response Team (ThaiCERT)
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1234
E-mail report@thaicert.or.th
PGP Download PGP key