ATT&CKReferencesTrendMicro Ursnif File Dec 2014

TrendMicro Ursnif File Dec 2014

Caragay, R. (2014, December 11). Info-Stealing File Infector Hits US, UK. Retrieved June 5, 2019.

Open the source

Techniques0

Not cited by any technique.

Groups0

None recorded.

Software0

None recorded.

Campaigns0

None recorded.

Procedure examples3

TechniqueUsed byProcedure example
T1080
Taint Shared Content
MalwareUrsnif

Ursnif has copied itself to and infected files in network drives for propagation.

T1091
Replication Through Removable Media
MalwareUrsnif

Ursnif has copied itself to and infected removable drives for propagation.

T1497.003
Time Based Checks
MalwareUrsnif

Ursnif has used a 30 minute delay after execution to evade sandbox monitoring tools.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.