Malware.View on attack.mitre.org
| Technique | Procedure example |
|---|---|
| T1059.003 Windows Command Shell |
adbupd can run a copy of cmd.exe. |
| T1546.003 Windows Management Instrumentation Event Subscription |
adbupd can use a WMI script to achieve persistence. |
| T1573.002 Asymmetric Cryptography |
adbupd contains a copy of the OpenSSL library to encrypt C2 traffic. |
None recorded.
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.