Trusted Design

Trojan.sysscan credential stealing Trojan

概要

Trojan.sysscan, written in Delphi, has extensive capabilities to search and extract cookies and other credentials containing authentication details such as usernames and passwords targeted at banking, gambling and tax websites as well as information saved by Point of Sale software. By stealing connection details, our attackers can easily steal identities and large quantities of money.

Created: 2026-02-23

Indicators

Indicatorsは見つかっていない。

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Ember Bear

Score: 10.61
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
  • T1588.001 - Malware
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT39

Score: 8.76
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1056 - Input Capture
MITREへのリンク →

Mustang Panda

Score: 13.69
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1588.003 - Code Signing Certificates
  • T1027.007 - Dynamic API Resolution
MITREへのリンク →

Tonto Team

Score: 4.09
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT32

Score: 12.93
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1078.003 - Local Accounts
MITREへのリンク →

BlackByte

Score: 5.74
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1055.012 - Process Hollowing
MITREへのリンク →

APT28

Score: 19.47
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1039 - Data from Network Shared Drive
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1550.001 - Application Access Token
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

Sowbug

Score: 5.63
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1039 - Data from Network Shared Drive
MITREへのリンク →

Storm-0501

Score: 7.21
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1036.004 - Masquerade Task or Service
  • T1657 - Financial Theft
MITREへのリンク →

Axiom

Score: 5.85
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Leviathan

Score: 7.32
Matched TTPs:
  • T1003 - OS Credential Dumping
  • T1003.001 - LSASS Memory
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Daggerfly

Score: 4.36
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1189 - Drive-by Compromise
MITREへのリンク →

GALLIUM

Score: 4.91
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
MITREへのリンク →

APT29

Score: 10.12
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
  • T1078.003 - Local Accounts
MITREへのリンク →

FIN13

Score: 14.07
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1657 - Financial Theft
  • T1588.002 - Tool
  • T1556 - Modify Authentication Process
MITREへのリンク →

Dragonfly

Score: 10.32
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1036.010 - Masquerade Account Name
  • T1189 - Drive-by Compromise
MITREへのリンク →

Ke3chang

Score: 4.91
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
MITREへのリンク →

Agrius

Score: 4.06
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
MITREへのリンク →

APT41

Score: 8.50
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT5

Score: 4.06
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
MITREへのリンク →

menuPass

Score: 9.63
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1588.002 - Tool
  • T1039 - Data from Network Shared Drive
  • T1055.012 - Process Hollowing
MITREへのリンク →

Threat Group-3390

Score: 14.47
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1055.012 - Process Hollowing
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

Wizard Spider

Score: 13.78
Matched TTPs:
  • T1003.002 - Security Account Manager
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1555.004 - Windows Credential Manager
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

FIN7

Score: 12.74
Matched TTPs:
  • T1674 - Input Injection
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1124 - System Time Discovery
  • T1078.003 - Local Accounts
MITREへのリンク →

OilRig

Score: 13.11
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1555.004 - Windows Credential Manager
  • T1588.003 - Code Signing Certificates
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Leafminer

Score: 4.08
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1189 - Drive-by Compromise
MITREへのリンク →

APT1

Score: 4.78
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.001 - Malware
  • T1588.002 - Tool
MITREへのリンク →

FIN8

Score: 5.47
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

HAFNIUM

Score: 8.27
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1550.001 - Application Access Token
  • T1078.003 - Local Accounts
MITREへのリンク →

Volt Typhoon

Score: 4.91
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1124 - System Time Discovery
MITREへのリンク →

APT33

Score: 3.81
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Medusa Group

Score: 4.84
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1657 - Financial Theft
  • T1588.002 - Tool
MITREへのリンク →

BRONZE BUTLER

Score: 11.20
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1039 - Data from Network Shared Drive
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
MITREへのリンク →

Magic Hound

Score: 12.32
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1036.010 - Masquerade Account Name
  • T1189 - Drive-by Compromise
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Earth Lusca

Score: 6.54
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.001 - Malware
  • T1588.002 - Tool
  • T1189 - Drive-by Compromise
MITREへのリンク →

UNC3886

Score: 10.11
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.001 - Malware
  • T1036.004 - Masquerade Task or Service
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
MITREへのリンク →

PLATINUM

Score: 3.24
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1189 - Drive-by Compromise
MITREへのリンク →

Fox Kitten

Score: 6.60
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1039 - Data from Network Shared Drive
MITREへのリンク →

Sandworm Team

Score: 3.81
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Moonstone Sleet

Score: 7.84
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1587 - Develop Capabilities
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

MuddyWater

Score: 3.81
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Aquatic Panda

Score: 6.87
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1588.001 - Malware
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
MITREへのリンク →

APT3

Score: 6.59
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1203 - Exploitation for Client Execution
  • T1036.010 - Masquerade Account Name
MITREへのリンク →

FIN6

Score: 6.94
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Kimsuky

Score: 19.75
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1036.004 - Masquerade Task or Service
  • T1657 - Financial Theft
  • T1588.002 - Tool
  • T1055.012 - Process Hollowing
  • T1588.003 - Code Signing Certificates
  • T1587 - Develop Capabilities
  • T1078.003 - Local Accounts
MITREへのリンク →

Play

Score: 7.51
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1657 - Financial Theft
  • T1588.002 - Tool
  • T1078.003 - Local Accounts
MITREへのリンク →

RedCurl

Score: 4.50
Matched TTPs:
  • T1003.001 - LSASS Memory
  • T1039 - Data from Network Shared Drive
MITREへのリンク →

LuminousMoth

Score: 3.31
Matched TTPs:
  • T1588.001 - Malware
  • T1588.002 - Tool
MITREへのリンク →

TA2541

Score: 6.46
Matched TTPs:
  • T1588.001 - Malware
  • T1588.002 - Tool
  • T1055.012 - Process Hollowing
MITREへのリンク →

LAPSUS$

Score: 3.31
Matched TTPs:
  • T1588.001 - Malware
  • T1588.002 - Tool
MITREへのリンク →

Metador

Score: 3.31
Matched TTPs:
  • T1588.001 - Malware
  • T1588.002 - Tool
MITREへのリンク →

Andariel

Score: 5.72
Matched TTPs:
  • T1588.001 - Malware
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

TA505

Score: 3.31
Matched TTPs:
  • T1588.001 - Malware
  • T1588.002 - Tool
MITREへのリンク →

Turla

Score: 13.95
Matched TTPs:
  • T1588.001 - Malware
  • T1588.002 - Tool
  • T1555.004 - Windows Credential Manager
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
  • T1078.003 - Local Accounts
MITREへのリンク →

BackdoorDiplomacy

Score: 5.40
Matched TTPs:
  • T1588.001 - Malware
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
MITREへのリンク →

Scattered Spider

Score: 5.83
Matched TTPs:
  • T1588.001 - Malware
  • T1657 - Financial Theft
  • T1588.002 - Tool
MITREへのリンク →

Winter Vivern

Score: 3.86
Matched TTPs:
  • T1036.004 - Masquerade Task or Service
  • T1189 - Drive-by Compromise
MITREへのリンク →

BITTER

Score: 4.44
Matched TTPs:
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

PROMETHIUM

Score: 6.53
Matched TTPs:
  • T1036.004 - Masquerade Task or Service
  • T1189 - Drive-by Compromise
  • T1078.003 - Local Accounts
MITREへのリンク →

ZIRCONIUM

Score: 4.69
Matched TTPs:
  • T1036.004 - Masquerade Task or Service
  • T1124 - System Time Discovery
MITREへのリンク →

Higaisa

Score: 6.18
Matched TTPs:
  • T1036.004 - Masquerade Task or Service
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
MITREへのリンク →

Lazarus Group

Score: 15.45
Matched TTPs:
  • T1036.004 - Masquerade Task or Service
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1027.007 - Dynamic API Resolution
  • T1124 - System Time Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

INC Ransom

Score: 3.37
Matched TTPs:
  • T1657 - Financial Theft
  • T1588.002 - Tool
MITREへのリンク →

Contagious Interview

Score: 14.28
Matched TTPs:
  • T1657 - Financial Theft
  • T1588.002 - Tool
  • T1204.004 - Malicious Copy and Paste
  • T1587 - Develop Capabilities
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Cinnamon Tempest

Score: 3.37
Matched TTPs:
  • T1657 - Financial Theft
  • T1588.002 - Tool
MITREへのリンク →

BlackTech

Score: 5.49
Matched TTPs:
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

Storm-1811

Score: 10.84
Matched TTPs:
  • T1588.002 - Tool
  • T1056 - Input Capture
  • T1036.010 - Masquerade Account Name
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Patchwork

Score: 7.26
Matched TTPs:
  • T1588.002 - Tool
  • T1055.012 - Process Hollowing
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Sea Turtle

Score: 5.01
Matched TTPs:
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1078.003 - Local Accounts
MITREへのリンク →

FIN10

Score: 3.52
Matched TTPs:
  • T1588.002 - Tool
  • T1078.003 - Local Accounts
MITREへのリンク →

Gorgon Group

Score: 4.00
Matched TTPs:
  • T1588.002 - Tool
  • T1055.012 - Process Hollowing
MITREへのリンク →

Gamaredon Group

Score: 3.88
Matched TTPs:
  • T1588.002 - Tool
  • T1039 - Data from Network Shared Drive
MITREへのリンク →

Chimera

Score: 6.48
Matched TTPs:
  • T1588.002 - Tool
  • T1039 - Data from Network Shared Drive
  • T1124 - System Time Discovery
MITREへのリンク →

APT42

Score: 4.69
Matched TTPs:
  • T1588.002 - Tool
  • T1056 - Input Capture
MITREへのリンク →

Sidewinder

Score: 4.09
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
MITREへのリンク →

The White Company

Score: 4.09
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
MITREへのリンク →

EXOTIC LILY

Score: 4.02
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT37

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Transparent Tribe

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Tropic Trooper

Score: 4.16
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1078.003 - Local Accounts
MITREへのリンク →

Elderwood

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Darkhotel

Score: 5.85
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
MITREへのリンク →

Stealth Falcon

Score: 3.62
Matched TTPs:
  • T1555.004 - Windows Credential Manager
MITREへのリンク →

Windshift

Score: 4.29
Matched TTPs:
  • T1189 - Drive-by Compromise
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Dark Caracal

Score: 4.29
Matched TTPs:
  • T1189 - Drive-by Compromise
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Mustard Tempest

Score: 6.30
Matched TTPs:
  • T1189 - Drive-by Compromise
  • T1608.006 - SEO Poisoning
MITREへのリンク →

CURIUM

Score: 6.88
Matched TTPs:
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Velvet Ant

Score: 6.80
Matched TTPs:
  • T1078.003 - Local Accounts
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

APT28

Score: 0.77
Matched TTPs:
  • T1211 - Exploitation for Defense Evasion
  • T1203 - Exploitation for Client Execution
  • T1588.002 - Tool
  • T1189 - Drive-by Compromise
  • T1550.001 - Application Access Token
  • T1003.001 - LSASS Memory
  • T1003 - OS Credential Dumping
  • T1039 - Data from Network Shared Drive
MITREへのリンク →

Kimsuky

Score: 0.76
Matched TTPs:
  • T1055.012 - Process Hollowing
  • T1078.003 - Local Accounts
  • T1588.002 - Tool
  • T1657 - Financial Theft
  • T1003.001 - LSASS Memory
  • T1588.003 - Code Signing Certificates
  • T1036.004 - Masquerade Task or Service
  • T1587 - Develop Capabilities
MITREへのリンク →

Threat Group-3390

Score: 0.61
Matched TTPs:
  • T1055.012 - Process Hollowing
  • T1203 - Exploitation for Client Execution
  • T1588.002 - Tool
  • T1189 - Drive-by Compromise
  • T1003.001 - LSASS Memory
  • T1588.003 - Code Signing Certificates
  • T1003.002 - Security Account Manager
MITREへのリンク →

Lazarus Group

Score: 0.60
Matched TTPs:
  • T1027.007 - Dynamic API Resolution
  • T1189 - Drive-by Compromise
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
  • T1566.003 - Spearphishing via Service
  • T1036.004 - Masquerade Task or Service
MITREへのリンク →

Turla

Score: 0.60
Matched TTPs:
  • T1588.001 - Malware
  • T1078.003 - Local Accounts
  • T1189 - Drive-by Compromise
  • T1588.002 - Tool
  • T1555.004 - Windows Credential Manager
  • T1124 - System Time Discovery
MITREへのリンク →

FIN13

Score: 0.59
Matched TTPs:
  • T1588.002 - Tool
  • T1657 - Financial Theft
  • T1003.001 - LSASS Memory
  • T1003.002 - Security Account Manager
  • T1036.004 - Masquerade Task or Service
  • T1556 - Modify Authentication Process
MITREへのリンク →

Contagious Interview

Score: 0.58
Matched TTPs:
  • T1204.004 - Malicious Copy and Paste
  • T1588.002 - Tool
  • T1657 - Financial Theft
  • T1566.003 - Spearphishing via Service
  • T1587 - Develop Capabilities
MITREへのリンク →

Wizard Spider

Score: 0.57
Matched TTPs:
  • T1588.002 - Tool
  • T1003.001 - LSASS Memory
  • T1555.004 - Windows Credential Manager
  • T1588.003 - Code Signing Certificates
  • T1003.002 - Security Account Manager
  • T1036.004 - Masquerade Task or Service
MITREへのリンク →

FIN7

Score: 0.57
Matched TTPs:
  • T1078.003 - Local Accounts
  • T1674 - Input Injection
  • T1588.002 - Tool
  • T1124 - System Time Discovery
  • T1036.004 - Masquerade Task or Service
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る