Dofoil

GPTKB entity

Statements (25)
Predicate Object
gptkbp:instanceOf malware
gptkbp:abilities gptkb:cryptocurrency
downloads additional malware
steals information
gptkbp:alsoKnownAs gptkb:SmokeLoader
gptkb:Smoke_Loader
gptkbp:category cybercrime
gptkbp:detects gptkb:Kaspersky
gptkb:ESET
gptkb:Microsoft_Defender
gptkbp:discoveredBy 2011
gptkbp:distributedBy malicious websites
malicious email attachments
exploit kits
https://www.w3.org/2000/01/rdf-schema#label Dofoil
gptkbp:notableBattle 2018 large-scale campaign detected by Microsoft
gptkbp:platform gptkb:Windows
gptkbp:technique code injection
process hollowing
C2 communication
gptkbp:usesMalware trojan
downloader
gptkbp:writtenBy gptkb:C/C++
gptkbp:bfsParent gptkb:Smokeloader
gptkbp:bfsLayer 6