Skip to content

S0001 Trojan.Mebromi

Trojan.Mebromi is BIOS-level malware that takes control of the victim before MBR. 1

Item Value
ID S0001
Associated Names
Version 1.1
Created 31 May 2017
Last Modified 30 March 2020
Navigation Layer View In ATT&CK® Navigator

Techniques Used

Domain ID Name Use
enterprise T1542 Pre-OS Boot -
enterprise T1542.001 System Firmware Trojan.Mebromi performs BIOS modification and can download and execute a file as well as protect itself from removal.1


Back to top