Detecttechnique

D3-FHFile Hashing

File Hashing

Definition

Employing file hash comparisons to detect known malware.

Defends against99

TypeTargetConfidenceTier
SubTechniqueScreensavert1546.002100%live
SubTechniqueLocal Email Collectiont1114.001100%live
SubTechniquePath Interception by Unquoted Patht1574.009100%live
SubTechniqueArchive via Custom Methodt1560.003100%live
SubTechniqueFile Deletiont1070.004100%live
SubTechniqueLocal Data Stagingt1074.001100%live
SubTechniqueNetwork Logon Scriptt1037.003100%live
SubTechniquePath Interception by Search Order Hijackingt1574.008100%live
TechniqueData Encrypted for Impactt1486100%live
SubTechniqueRegistry Run Keys / Startup Foldert1547.001100%live
TechniqueCredentials from Password Storest1555100%live
SubTechniqueExfiltration Over Asymmetric Encrypted Non-C2 Protocolt1048.002100%live
SubTechniqueOutlook Formst1137.003100%live
SubTechniqueTrapt1546.005100%live
SubTechniqueArchive via Libraryt1560.002100%live
SubTechniqueLaunch Daemont1543.004100%live
TechniqueInternal Spearphishingt1534100%live
SubTechniqueCredentials In Filest1552.001100%live
SubTechniqueRename System Utilitiest1036.003100%live
SubTechniqueDLL Side-Loadingt1574.002100%live
SubTechniqueRe-opened Applicationst1547.007100%live
SubTechniqueRC Scriptst1037.004100%live
SubTechniqueLaunchdt1053.004100%live
TechniqueSoftware Deployment Toolst1072100%live
TechniqueXSL Script Processingt1220100%live
SubTechniqueCompile After Deliveryt1027.004100%live
TechniqueRootkitt1014100%live
SubTechniquePortable Executable Injectiont1055.002100%live
SubTechniqueDynamic Linker Hijackingt1574.006100%live
SubTechniqueDylib Hijackingt1574.004100%live

Showing top 30 of 99 by confidence. Click any target to see the full neighbourhood.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Defence
File Hash Reputation Analysis
Defence
File Content Analysis
Defence
File Integrity Monitoring
Defence
File Content Rules
Defence
File Encryption
Defence
System File Analysis
Sourced from MITRE D3FEND ontology. Curated by Adam Lundqvist, SQUR.