logo

Following MITRE's footsteps in analyzing malware behavior

ID: 1ac10fc7-3452-573e-87ec-7e1293a33e06

STIX ID: report--1ac10fc7-3452-573e-87ec-7e1293a33e06

Feed Name: VirusTotal Blog

Date Published: 2024-02-21

Date Updated: 2026-05-01

Author: Alexandra Martin

...
...

This article explains how to use VirusTotal Intelligence’s MITRE ATT&CK mappings and behavior-based search modifiers to hunt for malware, showcasing example queries for ransomware (e.g., CryptEncrypt API usage) and keyloggers (T1056.001), and providing an appendix of granular behavior filters to refine detections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.