SDBbot

MITRE
Tipo Malware:
Other
Prima attivita:
Unknown
Ultima attivita:
Unknown
Dettagli:

[SDBbot](https://attack.mitre.org/software/S0461) is a backdoor with installer and loader components that has been used by [TA505](https://attack.mitre.org/groups/G0092) since at least 2019.(Citation: Proofpoint TA505 October 2019)(Citation: IBM TA505 April 2020)

Tecniche Associate (24)
ID ATT&CK Tattiche
T1005 Data from Local System -
T1016 System Network Configuration Discovery -
T1021.001 Remote Desktop Protocol -
T1027 Obfuscated Files or Information -
T1027.002 Software Packing -
T1033 System Owner/User Discovery -
T1041 Exfiltration Over C2 Channel -
T1055.001 Dynamic-link Library Injection -
T1057 Process Discovery -
T1059.003 Windows Command Shell -
T1070 Indicator Removal -
T1070.004 File Deletion -
T1082 System Information Discovery -
T1083 File and Directory Discovery -
T1090 Proxy -
Usato da Attori (1)
Metadata
ID: 415
Created: 13/01/2026 17:48
Updated: 20/04/2026 16:00