Malware used by APT 1 (Chinese PLA Unit 61398), employing hidden HTML comments as a covert C2 mechanism.
| magic | exe |
| mime type | application/vnd.microsoft.portable-executable |
| size | 24.6 kB |
| entropy | 5.849403858 |
| md5 | c1393e...138554 |
| sha1 | 5dd8f2...d4c053 |
| sha256 | bb5680...758b80 |
| imphash | 1159e3...74c07a |
| tlsh | 3bb24a...52031e |