Statements (25)
| Predicate | Object |
|---|---|
| gptkbp:instanceOf |
gptkb:malware
|
| gptkbp:abilities |
data exfiltration
persistence command execution |
| gptkbp:alsoKnownAs |
PowerStats
|
| gptkbp:C2Communication |
gptkb:DNS
gptkb:HTTP SMTP |
| gptkbp:category |
gptkb:cybercrime
|
| gptkbp:deliveredBy |
phishing emails
malicious attachments |
| gptkbp:detects |
gptkb:Kaspersky
gptkb:Symantec gptkb:Microsoft_Defender |
| gptkbp:firstObserved |
2017
|
| gptkbp:programmingLanguage |
gptkb:PowerShell
|
| gptkbp:relatedTo |
Iranian cyber operations
|
| gptkbp:target |
gptkb:Windows_operating_system
|
| gptkbp:usedBy |
gptkb:APT33
gptkb:Elfin_Team |
| gptkbp:usesMalware |
gptkb:Trojan
loader |
| gptkbp:bfsParent |
gptkb:MuddyWater_Loader
|
| gptkbp:bfsLayer |
7
|
| https://www.w3.org/2000/01/rdf-schema#label |
POWERSTATS Loader
|