Ferocious — Malware Profile
Ferocious is a first stage implant composed of VBS and PowerShell scripts that has been used by WIRTE since at least 2021.
MITRE ATT&CK techniques (9)
- T1059.001 PowerShell
- T1059.005 Visual Basic
- T1070.004 File Deletion
- T1082 System Information Discovery
- T1112 Modify Registry
- T1120 Peripheral Device Discovery
- T1497.001 System Checks
- T1518.001 Security Software Discovery
- T1546.015 Component Object Model Hijacking