QuanPinLoader

First seen
2021-06-15 00:00:00
Malware type
loader
Profile updated
2026-07-07 14:51:11

Targeted industries: technology-and-telecommunications government-and-public-sector

Targeted regions: country_code:cn

Context

According to ESET Research, this is a loader that has the Mandarin Chinese symbol (yang in the Pinyin transliteration) as an icon in the resources. It also contains the string SampleIMESimplifiedQuanPin.txt, which suggests that it is probably based on the open-source project Sample IME, a TSF-based input method editor demo.

Reports & references

  • ESET — Gotta Fly Lazarus Targets Uav Sector (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Quan Pin Loader (report)

External references