TYPEFRAME — Malware Profile
TYPEFRAME is a remote access tool that has been used by Lazarus Group.
MITRE ATT&CK techniques (15)
- T1027.011 Fileless Storage
- T1027.013 Encrypted/Encoded File
- T1059.003 Windows Command Shell
- T1059.005 Visual Basic
- T1070.004 File Deletion
- T1083 File and Directory Discovery
- T1090 Proxy
- T1105 Ingress Tool Transfer
- T1112 Modify Registry
- T1140 Deobfuscate/Decode Files or Information
- T1204.002 Malicious File
- T1543.003 Windows Service
- T1571 Non-Standard Port
- T1680 Local Storage Discovery
- T1686.003 Windows Host Firewall