Activity timeline
SilkParasite appears in 2 tracked threats between and .
ATT&CK techniques observed
- T1047 Windows Management Instrumentation — Executionobserved in 2 of 2 tracked threats
- T1057 Process Discovery — Discoveryobserved in 2 of 2 tracked threats
- T1001 Data Obfuscation — Command and Controlobserved in 1 of 2 tracked threats
- T1027 Obfuscated Files or Information — Stealth (formerly Defense Evasion)observed in 1 of 2 tracked threats
- T1027.002 Software Packing — Stealth (formerly Defense Evasion)observed in 1 of 2 tracked threats
- T1036.005 Match Legitimate Resource Name or Location — Stealth (formerly Defense Evasion)observed in 1 of 2 tracked threats
- T1049 System Network Connections Discovery — Discoveryobserved in 1 of 2 tracked threats
- T1053 Scheduled Task/Job — Persistenceobserved in 1 of 2 tracked threats
- T1053.005 Scheduled Task — Persistenceobserved in 1 of 2 tracked threats
- T1055 Process Injection — Stealth (formerly Defense Evasion)observed in 1 of 2 tracked threats
- T1056 Input Capture — Collectionobserved in 1 of 2 tracked threats
- T1056.001 Keylogging — Collectionobserved in 1 of 2 tracked threats
- T1059 Command and Scripting Interpreter — Executionobserved in 1 of 2 tracked threats
- T1059.005 Visual Basic — Executionobserved in 1 of 2 tracked threats
- T1071 Application Layer Protocol — Command and Controlobserved in 1 of 2 tracked threats