Stats
- First seen
- May 2022
- Last seen
- September 2026
MITRE ATT&CK techniques
39 techniques across 9 tactics.
TA0002 Execution
TA0004 Privilege Escalation
TA0005 Stealth
- T1014Rootkit
- T1027Obfuscated Files or Information
- T1027.003Steganography
- T1027Obfuscated Files or Information
- T1027.003Steganography
- T1036Masquerading
- T1036.005Match Legitimate Resource Name or Location
- T1036Masquerading
- T1036.005Match Legitimate Resource Name or Location
- T1055Process Injection
- T1055.001Dynamic-link Library Injection
- T1140Deobfuscate/Decode Files or Information
- T1574Hijack Execution Flow
- T1574.001DLL
TA0007 Discovery
TA0009 Collection
Alert name variants
| Alert Name |
|---|
| Gen:Variant.Ramsay.1 |
| Gen:Variant.Ramsay.10 |
| Gen:Variant.Ramsay.2 |
| Gen:Variant.Ramsay.4 |
| Gen:Variant.Ramsay.5 |
| Trojan.Ramsay.1 |
| Win32.Spyware.Ramsay |
| Win32.Trojan.Ramsay |
| Win64.Trojan.Ramsay |