CHAVECLOAK

Description

(Fortinet) FortiGuard Labs recently uncovered a threat actor employing a malicious PDF file to propagate the banking Trojan CHAVECLOAK. This intricate attack involves the PDF downloading a ZIP file and subsequently utilizing DLL side-loading techniques to execute the final malware. Notably, CHAVECLOAK is specifically designed to target users in Brazil, aiming to steal sensitive information linked to financial activities.

Names

Name
CHAVECLOAK

Category

Malware

Type

  • Banking trojan
  • Reconnaissance
  • Backdoor
  • Info stealer
  • Credential stealer

Information

Other Information

Uuid

9cc736db-4710-4150-a5a0-a272309e5304

Last Card Change

2024-03-07