test_scratch / cti-ATT-CK-v13.1 /ics-attack /malware /malware--49c04994-1035-4b58-89b7-cf8956e3b423.json
khoicrtp's picture
Upload 2298 files
5fe70fd
raw
history blame
2.79 kB
{
"type": "bundle",
"id": "bundle--cf631640-1f28-441b-931c-119c4b07efaa",
"spec_version": "2.0",
"objects": [
{
"labels": [
"malware"
],
"x_mitre_platforms": [
"Windows"
],
"x_mitre_domains": [
"ics-attack"
],
"x_mitre_aliases": [
"Conficker",
"Downadup",
"Kido"
],
"object_marking_refs": [
"marking-definition--fa42a846-8d90-4e51-bc29-71d5b4802168"
],
"name": "Conficker",
"description": "[Conficker](https://collaborate.mitre.org/attackics/index.php/Software/S0012) is a computer worm that targets Microsoft Windows and was first detected in November 2008. It targets a vulnerability (MS08-067) in Windows OS software and dictionary attacks on administrator passwords to propagate while forming a botnet. Conficker made its way onto computers and removable disk drives in a nuclear power plant. (Citation: Malware Shuts Down German Nuclear Power Plant on Chernobyl's 30th Anniversary)",
"type": "malware",
"x_mitre_version": "1.0",
"created_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
"id": "malware--49c04994-1035-4b58-89b7-cf8956e3b423",
"created": "2017-05-31T21:32:59.661Z",
"modified": "2021-10-21T14:00:00.188Z",
"external_references": [
{
"external_id": "S1003",
"source_name": "mitre-ics-attack",
"url": "https://collaborate.mitre.org/attackics/index.php/Software/S0012"
},
{
"description": "Catalin Cimpanu. (2016, April 26). Malware Shuts Down German Nuclear Power Plant on Chernobyl's 30th Anniversary. Retrieved October 14, 2019.",
"source_name": "Malware Shuts Down German Nuclear Power Plant on Chernobyl's 30th Anniversary",
"url": "https://news.softpedia.com/news/on-chernobyl-s-30th-anniversary-malware-shuts-down-german-nuclear-power-plant-503429.shtml"
},
{
"description": "Symantec. (2015, June 30). Simple steps to protect yourself from the Conficker Worm. Retrieved December 5, 2019.",
"source_name": "Symantec Conficker Jun 2015",
"url": "https://support.symantec.com/us/en/article.tech93179.html"
}
],
"x_mitre_attack_spec_version": "2.1.0",
"x_mitre_modified_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
"x_mitre_deprecated": true
}
]
}