Jump to main content

Christian_knockers.7z 【Linux】

: Often provided in the chat to bypass automated email scanners.

A malicious Dynamic Link Library () designed for DLL Side-Loading . Execution Flow : The victim extracts the files and runs the executable. Christian_Knockers.7z

: Lazarus Group (sub-group: Diamond Sleet/Zinc). : Often provided in the chat to bypass

The DLL executes a backdoor (often a variant of or Manuscrypt ) that establishes a connection to a Command and Control (C2) server. Key Indicators of Compromise (IoCs) Christian_Knockers.7z