Skip to content

Latest commit

 

History

History
41 lines (32 loc) · 980 Bytes

adwind-jrat.md

File metadata and controls

41 lines (32 loc) · 980 Bytes
ID X0048
Aliases None
Platforms Windows, Linus, macOS
Year 2019
Associated ATT&CK Software jRAT

Adwind jRAT

Adwind jRAT is a remote access Trojan that uses Java to take control and collect data from a user's machine. [1]

ATT&CK Techniques

See ATT&CK: jRAT - Techniques Used.

MBC Behaviors

Name Use
Execution::Execution Dependency (B0044) Adwind jRAT uses standard Java commands to mask its behavior. [1]

References

[1] https://www.menlosecurity.com/blog/hiding-in-plain-sight-new-adwind-jrat-variant-uses-normal-java-commands-to-mask-its-behavior/