SDBBOT

SDBBOTSDBbot

Description

SDBbot is a new remote access Trojan (RAT) written in C++ that has been delivered by the Get2 downloader in recent TA505 campaigns. Its name is derived from the debugging log file (sdb.log.txt) and DLL name (BotDLL[.]dll) used in the initial analyzed sample. It also makes use of application shimming [1] for persistence. SDBbot is composed of three pieces: an installer, a loader, and a RAT component.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
Sibot
Software
Sathurbot
Software
QakBot
Software
TrickBot
Software
Get2
Software
Slenfbot
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.