Techniques
21 techniques T1489 Service Stop T1562.001 Disable or Modify Tools T1564.001 Hidden Files and Directories T1053.005 Scheduled Task T1567.002 Exfiltration to Cloud Storage T1219 Remote Access Tools T1546.003 Windows Management Instrumentation Event Subscription T1005 Data from Local System T1105 Ingress Tool Transfer T1566 Phishing T1555.003 Credentials from Web Browsers T1560 Archive Collected Data T1071.001 Web Protocols T1566.001 Spearphishing Attachment T1074.001 Local Data Staging T1027 Obfuscated Files or Information T1547 Boot or Logon Autostart Execution T1567 Exfiltration Over Web Service T1041 Exfiltration Over C2 Channel T1112 Modify Registry T1036 Masquerading