ATT&CKReferencesAcronis XLoader 2021

Acronis XLoader 2021

Acronis. (2021, November 26). Trojan-as-a-service: From Formbook to XLoader. Retrieved March 11, 2025.

Open the source

Techniques0

Not cited by any technique.

Groups0

None recorded.

Software1

Campaigns0

None recorded.

Procedure examples4

TechniqueUsed byProcedure example
T1033
System Owner/User Discovery
MalwareXLoader

XLoader can identify the username from a victim machine.

T1070.004
File Deletion
MalwareXLoader

XLoader can delete malicious executables from compromised machines.

T1082
System Information Discovery
MalwareXLoader

XLoader can collect system information and supported language information from the victim machine.

T1566.001
Spearphishing Attachment
MalwareXLoader

XLoader has been delivered as a phishing attachment, including PDFs with embedded links, Word and Excel files, and various archive files (ZIP, RAR, ACE, and ISOs) containing EXE payloads.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.