Pacha GroupPacha Group

Also known as: Pacha Group

Known aliases
1

Profile

Antd is a miner found in the wild on September 18, 2018. Recently we discovered that the authors from Antd are actively delivering newer campaigns deploying a broad number of components, most of them completely undetected and operating within compromised third party Linux servers. Furthermore, we have observed that some of the techniques implemented by this group are unconventional, and there is an element of sophistication to them. We believe the authors behind this malware are from Chinese origin. We have labeled the undetected Linux.Antd variants, Linux.GreedyAntd and classified the threat actor as Pacha Group.

Aliases· 1

Pacha Group

References

  1. https://www.intezer.com/blog-technical-analysis-pacha-group/
  2. https://www.intezer.com/blog-technical-analysis-cryptocurrency-mining-war-on-the-cloud/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
Iron Group
Actor
Antlion
Group
APT17
Actor
APT19
Actor
Tonto Team
Actor
TEMPER PANDA
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.