Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Indicators Netplwiz.exe

Netplwiz.exe

TLP:CLEAR
Active

Filename

Description

Extracted from web research on UNC2970. Source: https://cloud.google.com/blog/topics/threat-intelligence/lightshow-north-korea-unc2970/

Sightings (0)

No sightings recorded yet

Details

Name / Label
Netplwiz.exe
Pattern Type
STIX
Confidence
50%
Valid From
Aug 10, 2026 16:48
Total Sightings
0
Added
Aug 10, 2026
No notes yet. Click "Add Note" to create the first analysis note.
No opinions yet. Be the first to assess this intelligence.

Record Sighting

Record an observation of Netplwiz.exe

Sighting Type
Source
Comment
Leaving Threaticon

This link opens an external site that isn't part of the platform.