Domain | ID | Name | Use | |
---|---|---|---|---|
Enterprise | T1543 | .003 | Create or Modify System Process: Windows Service | |
Enterprise | T1112 | Modify Registry |
Naid creates Registry entries that store information about a created service and point to a malicious DLL dropped to disk.[2] |
|
Enterprise | T1082 | System Information Discovery |
Naid collects a unique identifier (UID) from a compromised host.[2] |
|
Enterprise | T1016 | System Network Configuration Discovery |
ID | Name | References |
---|---|---|
G0066 | Elderwood |