Třída: Hoax
Podvod je falešné varování o viru nebo jiném škodlivém kódu. Obvykle je podvod ve formě e-mailové zprávy upozorňující čtenáře na nový nebezpečný virus a naznačuje, že čtenář předá zprávu. Hoaxy samy o sobě nepoškodí, ale jejich distribuce u významných uživatelů často způsobuje strach a nejistotu.Většina dodavatelů antiviru obsahuje informace o podvodných událostech na svých webových stránkách a je vždy vhodné prověřit před odesláním varovných zpráv.
Platfoma: JS
JavaScript (JS) je prototypový programovací jazyk. JavaScript byl tradičně implementován jako interpretovaný jazyk. Nejběžnějším používáním je ve webových prohlížečích, kde se používá pro skriptování a přidá interaktivitu na webové stránky.Family: Hoax.JS.Phish
No family descriptionExamples
AD69BED7D752AA6622D290FB06712B64F8FB29626BA115494A1EA35BE2CB5475
70275B57FFF6FBF568C23D5E580B9F4D
B07B1E0AA556BC45AC9CE17EB2D2C1AD
2EDE73C98D67781C880134921D65B234
Tactics and Techniques: Mitre*
TA0007
Discovery
The adversary is trying to figure out your environment.
Discovery consists of techniques an adversary may use to gain knowledge about the system and internal network. These techniques help adversaries observe the environment and orient themselves before deciding how to act. They also allow adversaries to explore what they can control and what’s around their entry point in order to discover how it could benefit their current objective. Native operating system tools are often used toward this post-compromise information-gathering objective.
Discovery consists of techniques an adversary may use to gain knowledge about the system and internal network. These techniques help adversaries observe the environment and orient themselves before deciding how to act. They also allow adversaries to explore what they can control and what’s around their entry point in order to discover how it could benefit their current objective. Native operating system tools are often used toward this post-compromise information-gathering objective.
T1082
System Information Discovery
An adversary may attempt to get detailed information about the operating system and hardware, including version, patches, hotfixes, service packs, and architecture. Adversaries may use the information from System Information Discovery during automated discovery to shape follow-on behaviors, including whether or not the adversary fully infects the target and/or attempts specific actions.
Tools such as Systeminfo can be used to gather detailed system information. If running with privileged access, a breakdown of system data can be gathered through the
Infrastructure as a Service (IaaS) cloud providers such as AWS, GCP, and Azure allow access to instance and virtual machine information via APIs. Successful authenticated API calls can return data such as the operating system platform and status of a particular instance or the model view of a virtual machine.(Citation: Amazon Describe Instance)(Citation: Google Instances Resource)(Citation: Microsoft Virutal Machine API)
Tools such as Systeminfo can be used to gather detailed system information. If running with privileged access, a breakdown of system data can be gathered through the
systemsetup configuration tool on macOS. As an example, adversaries with user-level access can execute the df -aH command to obtain currently mounted disks and associated freely available space. Adversaries may also leverage a Network Device CLI on network devices to gather detailed system information (e.g. show version).(Citation: US-CERT-TA18-106A) System Information Discovery combined with information gathered from other forms of discovery and reconnaissance can drive payload development and concealment.(Citation: OSX.FairyTale)(Citation: 20 macOS Common Tools and Techniques)Infrastructure as a Service (IaaS) cloud providers such as AWS, GCP, and Azure allow access to instance and virtual machine information via APIs. Successful authenticated API calls can return data such as the operating system platform and status of a particular instance or the model view of a virtual machine.(Citation: Amazon Describe Instance)(Citation: Google Instances Resource)(Citation: Microsoft Virutal Machine API)
* © 2026 The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.