← All malwareLive Scan Result: Tria.ge
82509bbf7c7ce45efcf98d983f268a8f1e4ca4ffb400aa9624b21487e5db1c37
- Score
- 10/10
Threat Level
Known Bad
TrojanRatStealerInfostealerSpywareBotnetAdwareInstallerBootkitBrand:googleDefense EvasionDiscoveryExecutionPersistencePhishingPrivilege EscalationUpx
MITRE Behavior Map
Execution (TA0002)
- Scheduled Task (T1053.005)
Persistence (TA0003)
- Scheduled Task (T1053.005)
- Bootkit (T1542.003)
- Change Default File Association (T1546.001)
- Component Object Model Hijacking (T1546.015)
- Registry Run Keys / Startup Folder (T1547.001)
Privilege Escalation (TA0004)
- Scheduled Task (T1053.005)
- Change Default File Association (T1546.001)
- Component Object Model Hijacking (T1546.015)
- Registry Run Keys / Startup Folder (T1547.001)
Defense Evasion (TA0005)
- Modify Registry (T1112)
- Bootkit (T1542.003)
- SIP and Trust Provider Hijacking (T1553.003)
Discovery (TA0007)
- Query Registry (T1012)
- System Information Discovery (T1082)
- Peripheral Device Discovery (T1120)
- System Time Discovery (T1124)
- Network Share Discovery (T1135)
- Browser Information Discovery (T1217)
- System Language Discovery (T1614.001)
Command and Control (TA0011)
- Web Service (T1102)
Hostnames
3- 1.wealth.warzonedns.com
- 2.wealthy2019.com.strangled.net
- 3.wealthyme.ddns.net