Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 15:53:05 UTC Home > List all groups > List all tools > List all groups using tool TYPEFRAME Tool: TYPEFRAME Names TYPEFRAME Category Malware Type Loader Description (US-CERT) This malware report contains analysis of 11 malware samples consisting of 32-bit and 64-bit Windows executable files and a malicious Microsoft Word document that contains Visual Basic for Applications (VBA) macros. These files have the capability to download and install malware, install proxy and Remote Access Trojans (RATs), connect to command and control (C2) servers to receive additional instructions, and modify the victim's firewall to allow incoming connections. Information MITRE ATT&CK Malpedia AlienVault OTX Last change to this tool card: 17 January 2024 Download this tool card in JSON format All groups using tool TYPEFRAME Changed Name Country Observed APT groups Lazarus Group, Hidden Cobra, Labyrinth Chollima 2007-May 2025 1 group listed (1 APT, 0 other, 0 unknown) https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=0da67051-5c82-4733-b5be-ed172fb90f12 Page 1 of 2 Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=0da67051-5c82-4733-b5be-ed172fb90f12 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=0da67051-5c82-4733-b5be-ed172fb90f12 Page 2 of 2 APT groups Lazarus Group, Hidden Cobra, Labyrinth Chollima 2007-May 2025 1 group listed (1 APT, 0 other, 0 unknown) Page 1 of 2