# Solar > Tipo: **malware** · S1166 · [MITRE ATT&CK](https://attack.mitre.org/software/S1166) ## Descrição [[s1166-solar|Solar]] é um backdoor em C#/.NET utilizado pelo [[g0049-oilrig|OilRig]] durante a campanha [[outer-space|Outer Space]] para baixar, executar e exfiltrar arquivos. **Plataformas:** Windows ## Técnicas Utilizadas - [[t1053-005-scheduled-task|T1053.005 - Scheduled Task]] - [[t1105-ingress-tool-transfer|T1105 - Ingress Tool Transfer]] - [[t1020-automated-exfiltration|T1020 - Automated Exfiltration]] - [[t1573-001-symmetric-cryptography|T1573.001 - Symmetric Cryptography]] - [[t1041-exfiltration-over-c2-channel|T1041 - Exfiltration Over C2 Channel]] - [[t1082-system-information-discovery|T1082 - System Information Discovery]] - [[t1070-004-file-deletion|T1070.004 - File Deletion]] - [[t1132-001-standard-encoding|T1132.001 - Standard Encoding]] ## Grupos que Usam - [[g0049-oilrig|OilRig]] ## Referências - [MITRE ATT&CK - S1166](https://attack.mitre.org/software/S1166)