# Emissary
> Tipo: **malware** · S0082 · [MITRE ATT&CK](https://attack.mitre.org/software/S0082)
## Descrição
[[s0082-emissary|Emissary]] é um Trojan utilizado pelo grupo [[g0030-raspberry-typhoon|Lotus Blossom]]. Compartilha código com o [[s0081-elise|Elise]], sendo ambos os Trojans parte de um grupo de malware conhecido como LStudio.
**Plataformas:** Windows
## Técnicas Utilizadas
- [[t1547-001-registry-run-keys-startup-folder|T1547.001 - Registry Run Keys / Startup Folder]]
- [[t1027-013-encryptedencoded-file|T1027.013 - Encrypted/Encoded File]]
- [[t1055-001-dynamic-link-library-injection|T1055.001 - Dynamic-link Library Injection]]
- [[t1218-011-rundll32|T1218.011 - Rundll32]]
- [[t1016-system-network-configuration-discovery|T1016 - System Network Configuration Discovery]]
- [[t1059-003-windows-command-shell|T1059.003 - Windows Command Shell]]
- [[t1082-system-information-discovery|T1082 - System Information Discovery]]
- [[t1573-001-symmetric-cryptography|T1573.001 - Symmetric Cryptography]]
- [[t1071-001-web-protocols|T1071.001 - Web Protocols]]
- [[t1105-ingress-tool-transfer|T1105 - Ingress Tool Transfer]]
- [[t1615-group-policy-discovery|T1615 - Group Policy Discovery]]
- [[t1069-001-local-groups|T1069.001 - Local Groups]]
- [[t1007-system-service-discovery|T1007 - System Service Discovery]]
- [[t1027-001-binary-padding|T1027.001 - Binary Padding]]
- [[t1543-003-windows-service|T1543.003 - Windows Service]]
## Grupos que Usam
- [[g0030-raspberry-typhoon|Lotus Blossom]]
## Referências
- [MITRE ATT&CK - S0082](https://attack.mitre.org/software/S0082)