Malware

Koadic

First seen: 2017-01 • Status: active

Currently Active Threat

Koadic is a sneaky hacking tool that uses Windows Script Host to avoid detection.

Overview

Koadic is a COM-based rootkit using Windows Script Host for post-exploitation. It evades traditional antivirus.

Also Known As

Koadic C3

How It Spreads

  • Post-exploitation

What It Does

  • COM-based attacks
  • Rootkit capabilities

Is your business exposed?

Target Platforms

Windows

Detection Tips

  • Monitor Windows Script Host

MITRE ATT&CK Techniques

T1059, T1546

If You're Infected

  1. 1.

    Deep system investigation

Related Malware

Powershell Empire

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required