ATT&CKReferencesSymantec Briba May 2012

Symantec Briba May 2012

Ladley, F. (2012, May 15). Backdoor.Briba. Retrieved February 21, 2018.

Open the source

Techniques0

Not cited by any technique.

Groups0

None recorded.

Software1

Campaigns0

None recorded.

Procedure examples4

TechniqueUsed byProcedure example
T1105
Ingress Tool Transfer
MalwareBriba

Briba downloads files onto infected hosts.

T1218.011
Rundll32
MalwareBriba

Briba uses rundll32 within Registry Run Keys / Startup Folder entries to execute malicious DLLs.

T1543.003
Windows Service
MalwareBriba

Briba installs a service pointing to a malicious DLL dropped to disk.

T1547.001
Registry Run Keys / Startup Folder
MalwareBriba

Briba creates run key Registry entries pointing to malicious DLLs dropped to disk.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.