# capa > Identify malware capabilities mapped to MITRE ATT&CK framework and Malware Behavior Catalog - Run capa: `capa specimen.exe` - Run capa: `capa -vv specimen.exe` - Run capa: `capa -vv specimen.exe | grep -A7 'Suspended Process'`