Malware.View on attack.mitre.org
| Technique | Procedure example |
|---|---|
| T1083 File and Directory Discovery |
DDKONG lists files on the victim’s machine. |
| T1105 Ingress Tool Transfer |
DDKONG downloads and uploads files on the victim’s machine. |
| T1140 Deobfuscate/Decode Files or Information |
DDKONG decodes an embedded configuration using XOR. |
| T1218.011 Rundll32 |
DDKONG uses Rundll32 to ensure only a single instance of itself is running at once. |
None recorded.
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.