FireEye Threat Intelligence. (2015, July 13). Demonstrating Hustle, Chinese APT Groups Quickly Use Zero-Day Vulnerability (CVE-2015-5119) Following Hacking Team Leak. Retrieved January 25, 2016.
Not cited by any technique.
None recorded.
None recorded.
| Technique | Used by | Procedure example |
|---|---|---|
| T1057 Process Discovery |
Malwaregh0st RAT | gh0st RAT has the capability to list processes. |
| T1059 Command and Scripting Interpreter |
Malwaregh0st RAT | gh0st RAT is able to open a remote shell to execute commands. |
| T1070.004 File Deletion |
Malwaregh0st RAT | gh0st RAT has the capability to to delete files. |
| T1685.005 Clear Windows Event Logs |
Malwaregh0st RAT | gh0st RAT is able to wipe event logs. |
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.