Open Threat Intel Archive
OTIA
Indicators
ATT&CK
Threat actors
MITRE ATT&CK intrusion sets
Malware & tools
Software families & tooling
Techniques
Tactics & techniques
Reports
Sources
Developers
JSON API
Free CORS-enabled endpoints
MCP server
Model Context Protocol access
Source code
This project on GitHub
Loading the archive…
Open Threat Intel Archive
← Malware & tools
S0546
malware
SharpStage
SharpStage is a.NET malware with backdoor capabilities.
Platforms
Windows
MITRE ATT&CK ↗
Linked entities · 12
uses
T1059.003
Windows Command Shell
uses
T1053.005
Scheduled Task
uses
T1547.001
Registry Run Keys / Startup Folder
uses
T1102
Web Service
uses
T1113
Screen Capture
uses
T1059.001
PowerShell
uses
T1105
Ingress Tool Transfer
uses
T1082
System Information Discovery
uses
T1140
Deobfuscate/Decode Files or Infor…
uses
T1614.001
System Language Discovery
uses
T1047
Windows Management Instrumentation
uses by
G0021
Molerats