admin@338 — APT Profile

admin@338 is a China-based cyber threat group. It has previously used newsworthy events as lures to deliver malware and has primarily targeted organizations involved in financial, economic, and trade policy, typically using publicly available RATs such as PoisonIvy, as well as some non-public backdoors.

Also tracked as

TEMPER PANDA

Tools & malware

Vendor research

Read the full analysis on IntelFusions