>
Windows Syscalls
Syscalls
Version map
ATT&CK
Malware
Generator
Syscall graph
Blog
Language
EN — English
FR — Français
ES — Español
DE — Deutsch
← Back to ATT&CK index
T1564.001
sub-technique
Hidden Files and Directories
View on attack.mitre.org →
1 syscalls implement this technique
NtCreateFile
Creates or opens a file, directory, device, or named pipe — every dropper's first call to disk.