+ install secondary program

From ema
Jump to navigation Jump to search
EMA ID: ema-1138
Description: The 'install secondary program' Behavior installs another, different malware instance on the system on which the malware instance is executing.

Examples:

  • Backdoor: install a server that accepts incoming connections.
  • Secondary module: install a secondary module, typically related to the malware instance itself, on the same system on which the malware instance is executing.
  • Dropper: execute a dropped executable file.

Associated Capabilities/Subcapabilities: Capability.png Execution, Capability.png Persistence

Associated With + install secondary program
No results        


,