Technique List
Technique Name | Technique ID's | Categories | Snippet(s) | Rules(s) | OS | Creation Date |
---|---|---|---|---|---|---|
Thermal Zone Temperature | U1302 | Sandbox Evasion | 4 years, 6 months | |||
Checking Malware Name | U1303 U0401 | Sandbox Evasion, Anti-Monitoring | 4 years, 6 months | |||
RDTSCP | U1304 | Sandbox Evasion | 4 years, 6 months | |||
API Hammering | U1305 B0003.012 | Sandbox Evasion | 4 years, 6 months | |||
Process Reimaging | U1210 | Process Manipulating | 4 years, 10 months | |||
Malvertising | U1002 | Others | 5 years, 11 months | |||
C2 via Social Networks | U0901 | Network Evasion | 5 years, 11 months | |||
Peer to peer C2 | U0902 | Network Evasion | 5 years, 11 months | |||
Tor Network C2 | U0903 | Network Evasion | 5 years, 11 months | |||
DNS Hijacking | U0904 E1643.m01 | Network Evasion | 5 years, 11 months | |||
DNS Tunneling | U0905 T1048.003 | Network Evasion, Defense Evasion [Mitre] | 5 years, 11 months | |||
Domain Generation Algorithm | U0906 B0031 | Network Evasion | 5 years, 11 months | |||
Fast Flux | U0907 | Network Evasion | 5 years, 11 months | |||
NTFS Files Attributes | U0501 | Antivirus/EDR Evasion | 6 years | |||
Hiding Mechanisms | U1003 | Others | 6 years | |||
Wiping or Encrypting | U0301 | Anti-Forensic | 6 years | |||
Indicator Removal: Clear Windows Event Logs | T1070.001 U0302 | Anti-Forensic, Defense Evasion [Mitre] | 6 years | |||
Kill Process | U0403 | Anti-Monitoring | 6 years | |||
Opaque Predicate | U0201 B0032.019 | Anti-Disassembly | 6 years | |||
Code Transposition | U0202 | Anti-Disassembly | 6 years | |||
Register Reassignment | U0203 | Anti-Disassembly | 6 years | |||
Inserting Garbage Bytes | U0204 B0032.007 | Anti-Disassembly | 6 years | |||
Call Trick | U0205 | Anti-Disassembly | 6 years | |||
NOP Sled | U0206 | Anti-Disassembly | 6 years | |||
Inline Hooking | U1211 F0015.002 | Process Manipulating | 6 years | |||
LOLbins | U1004 | Others | 6 years | |||
COM Hijacking | U1212 | Process Manipulating | 6 years | |||
Ctrl+Inject | U1213 | Process Manipulating | 6 years | |||
Propagate | U1214 | Process Manipulating | 6 years | |||
Process Doppelgänging | U1215 | Process Manipulating | 6 years |