mirror of
https://github.com/S3N4T0R-0X0/APTs-Adversary-Simulation.git
synced 2026-08-04 09:41:40 +02:00
Update README.md
This commit is contained in:
@@ -14,6 +14,6 @@ This attack included several stages including DodgeBox, a reflective DLL loader
|
|||||||
|
|
||||||
1. Employs DLL sideloading as a means of executing DodgeBox.
|
1. Employs DLL sideloading as a means of executing DodgeBox.
|
||||||
|
|
||||||
2. The malicious DLL, DodgeBox, serves as a loader and is responsible for decrypting a second stage payload from an encrypted DAT file (sbiedll.dat).
|
2. The malicious DLL, DodgeBox, serves as a loader and is responsible for decrypting a second stage payload from an encrypted DAT file (sbiedll.dat), The decrypted payload, MoonWalk functions as a backdoor.
|
||||||
|
|
||||||
3. MoonWalk functions as a backdoor
|
3.
|
||||||
|
|||||||
Reference in New Issue
Block a user