# ccf32
> Tipo: **malware** · S1043 · [MITRE ATT&CK](https://attack.mitre.org/software/S1043)
## Descrição
[[s1043-ccf32|ccf32]] é um malware de coleta de dados em uso desde pelo menos fevereiro de 2019, mais notavelmente durante a campanha [[s1044-funnydream|FunnyDream]]; existe também uma versão similar em x64.
**Plataformas:** Windows
## Técnicas Utilizadas
- [[t1005-data-from-local-system|T1005 - Data from Local System]]
- [[t1119-automated-collection|T1119 - Automated Collection]]
- [[t1048-003-exfiltration-over-unencrypted-non-c2-protocol|T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol]]
- [[t1074-002-remote-data-staging|T1074.002 - Remote Data Staging]]
- [[t1560-001-archive-via-utility|T1560.001 - Archive via Utility]]
- [[t1059-003-windows-command-shell|T1059.003 - Windows Command Shell]]
- [[t1124-system-time-discovery|T1124 - System Time Discovery]]
- [[t1070-004-file-deletion|T1070.004 - File Deletion]]
- [[t1564-001-hidden-files-and-directories|T1564.001 - Hidden Files and Directories]]
- [[t1074-001-local-data-staging|T1074.001 - Local Data Staging]]
- [[t1053-005-scheduled-task|T1053.005 - Scheduled Task]]
- [[t1083-file-and-directory-discovery|T1083 - File and Directory Discovery]]
## Referências
- [MITRE ATT&CK - S1043](https://attack.mitre.org/software/S1043)