SOFTWARE
SOFTWARE
A-B
C-D
E-F
G-H
I-J
K-L
M-N
O-P
Q-R
S-T
U-V
W-X
TinyZBot
ID: S0004
Type: MALWARE
Platforms: Windows
Version: 1.1
Created: 31 May 2017
Last Modified: 30 March 2020
Techniques Used
Domain | ID | Name | Use | |
---|---|---|---|---|
Enterprise | T1547 | .001 | Boot or Logon Autostart Execution: Registry Run Keys / Startup Folder |
TinyZBot can create a shortcut in the Windows startup folder for persistence.[1] |
.009 | Boot or Logon Autostart Execution: Shortcut Modification |
TinyZBot can create a shortcut in the Windows startup folder for persistence.[1] |
||
Enterprise | T1115 | Clipboard Data |
TinyZBot contains functionality to collect information from the clipboard.[1] |
|
Enterprise | T1059 | .003 | Command and Scripting Interpreter: Windows Command Shell | |
Enterprise | T1543 | .003 | Create or Modify System Process: Windows Service |
TinyZBot can install as a Windows service for persistence.[1] |
Enterprise | T1562 | .001 | Impair Defenses: Disable or Modify Tools | |
Enterprise | T1056 | .001 | Input Capture: Keylogging | |
Enterprise | T1113 | Screen Capture |
Groups That Use This Software
ID | Name | References |
---|---|---|
G0003 | Cleaver |
References
×