Movatterモバイル変換


[0]ホーム

URL:


  1. Home
  2. Software
  3. Pasam

Pasam

Pasam is a trojan used byElderwood to open a backdoor on compromised hosts.[1][2]

ID: S0208
Type: MALWARE
Platforms: Windows
Version: 1.2
Created: 18 April 2018
Last Modified: 21 October 2025
Enterprise Layer
downloadview

Techniques Used

DomainIDNameUse
EnterpriseT1547.008Boot or Logon Autostart Execution:LSASS Driver

Pasam establishes by infecting the Security Accounts Manager (SAM) DLL to load a malicious DLL dropped to disk.[2]

EnterpriseT1005Data from Local System

Pasam creates a backdoor through which remote attackers can retrieve files.[2]

EnterpriseT1083File and Directory Discovery

Pasam creates a backdoor through which remote attackers can retrieve lists of files.[2]

EnterpriseT1070.004Indicator Removal:File Deletion

Pasam creates a backdoor through which remote attackers can delete files.[2]

EnterpriseT1105Ingress Tool Transfer

Pasam creates a backdoor through which remote attackers can upload files.[2]

EnterpriseT1680Local Storage Discovery

Pasam creates a backdoor through which remote attackers can retrieve information like free disk space.[2]

EnterpriseT1057Process Discovery

Pasam creates a backdoor through which remote attackers can retrieve lists of running processes.[2]

EnterpriseT1082System Information Discovery

Pasam creates a backdoor through which remote attackers can retrieve information like hostname.[2]

Groups That Use This Software

IDNameReferences
G0066Elderwood

[1]

References

×

[8]ページ先頭

©2009-2026 Movatter.jp