DCSrv

MITRE
Tipo Malware:
Other
Prima attivita:
Unknown
Ultima attivita:
Unknown
Dettagli:

[DCSrv](https://attack.mitre.org/software/S1033) is destructive malware that has been used by [Moses Staff](https://attack.mitre.org/groups/G1009) since at least September 2021. Though [DCSrv](https://attack.mitre.org/software/S1033) has ransomware-like capabilities, [Moses Staff](https://attack.mitre.org/groups/G1009) does not demand ransom or offer a decryption key.(Citation: Checkpoint MosesStaff Nov 2021)

Tecniche Associate (8)
ID ATT&CK Tattiche
T1027.013 Encrypted/Encoded File -
T1036.004 Masquerade Task or Service -
T1106 Native API -
T1112 Modify Registry -
T1124 System Time Discovery -
T1486 Data Encrypted for Impact -
T1529 System Shutdown/Reboot -
T1543.003 Windows Service -
Usato da Attori (1)
Metadata
ID: 242
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00