| Domain | ID | Name | Use | |
|---|---|---|---|---|
| Enterprise | T1112 | 修改注册表 |
Naid creates Registry entries that store information about a created service and point to a malicious DLL dropped to disk.[2] |
|
| Enterprise | T1543 | .003 | 创建或修改系统进程: Windows Service | |
| Enterprise | T1082 | 系统信息发现 |
Naid collects a unique identifier (UID) from a compromised host.[2] |
|
| Enterprise | T1016 | 系统网络配置发现 | ||