Malware.View on attack.mitre.org
Get2 is a downloader written in C++ that has been used by TA505 to deliver FlawedGrace, FlawedAmmyy, Snatch and SDBbot.
| Technique | Procedure example |
|---|---|
| T1033 System Owner/User Discovery |
Get2 has the ability to identify the current username of an infected host. |
| T1055.001 Dynamic-link Library Injection |
Get2 has the ability to inject DLLs into processes. |
| T1057 Process Discovery |
Get2 has the ability to identify running processes on an infected host. |
| T1059 Command and Scripting Interpreter |
Get2 has the ability to run executables with command-line arguments. |
| T1071.001 Web Protocols |
Get2 has the ability to use HTTP to send information collected from an infected host to C2. |
| T1082 System Information Discovery |
Get2 has the ability to identify the computer name and Windows version of an infected host. |
None recorded.
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.