diff --git a/Pakistan/APT/Transparent Tribe/22-01-20/analysis.md b/Pakistan/APT/Transparent Tribe/22-01-20/analysis.md index c767e66..ca69bf1 100644 --- a/Pakistan/APT/Transparent Tribe/22-01-20/analysis.md +++ b/Pakistan/APT/Transparent Tribe/22-01-20/analysis.md @@ -77,9 +77,27 @@ public void ulhtagniasdo_start() } ``` -
+
Command | +Description | +
---|---|
-procl | +Get the list of process | +
-thumb | +Get info of a picture | +
-clping | +Check activity | +
-putsrt | +Push the persistence in a Run key | +
-filsz | +Get infos of a specific file | +
-rupth | +Push the data received | +
-dowf | +Save to a file the data pushed on the system | +
-endpo | +Kill a process | +
-scrsz | +Get the size of the screen | +
-cownar | +Download and run a executable file | +
-cscreen | +Get a screenshot | +
-dirs | +List all the drives and directories | +
-stops | +stop the mod for get periodical screenshot | +
-scren | +start the mod for get periodical screenshot | +
-cnls | +Allow index, send data and disable continue screenshot | +
-udlt | +Download and execute an executable for remove an user ? | +
-delt | +Delete a specific file | +
-listf | +List files | +
-file | +Get a specific file | +
-info | +Get user and system infos, check if the AV is on blacklist | +
-runf | +Execute a specific file | +
-dowr | +Download a file on the system | +
-fldr | +Get folders and go silent mod | +