General

  • Target

    a9fa025fe912c8ad5e6566c675e045732c4d89f4187bfd94c4e916dd9fe25417.msi

  • Size

    1.3MB

  • Sample

    240430-kytnyaha51

  • MD5

    f83ed040b4e52088817df73ef51fe0d3

  • SHA1

    3d011c54ae9a66ef2a865afd694712b338feed5d

  • SHA256

    a9fa025fe912c8ad5e6566c675e045732c4d89f4187bfd94c4e916dd9fe25417

  • SHA512

    c4fe6171f4590a3f588bba5818d05ed525619fc3333f911ea785bebea11788f144b71974254f6dbf270a2b89f9c21698d882d378274cf63005223fe5618d15f0

  • SSDEEP

    24576:ezTxLN3YlMvZCFlp8zBQSc0ZoCvqKox0ECIgYmfLVYeBZr7AL7EveuFPY:ezz3YuW8zBQSc0ZnSKmZKumZr7AfEvLY

Score
10/10

Malware Config

Extracted

Family

latrodectus

C2

https://jarinamaers.shop/live/

https://startmast.shop/live/

Targets

    • Target

      a9fa025fe912c8ad5e6566c675e045732c4d89f4187bfd94c4e916dd9fe25417.msi

    • Size

      1.3MB

    • MD5

      f83ed040b4e52088817df73ef51fe0d3

    • SHA1

      3d011c54ae9a66ef2a865afd694712b338feed5d

    • SHA256

      a9fa025fe912c8ad5e6566c675e045732c4d89f4187bfd94c4e916dd9fe25417

    • SHA512

      c4fe6171f4590a3f588bba5818d05ed525619fc3333f911ea785bebea11788f144b71974254f6dbf270a2b89f9c21698d882d378274cf63005223fe5618d15f0

    • SSDEEP

      24576:ezTxLN3YlMvZCFlp8zBQSc0ZoCvqKox0ECIgYmfLVYeBZr7AL7EveuFPY:ezz3YuW8zBQSc0ZnSKmZKumZr7AfEvLY

    Score
    10/10
    • Latrodectus loader

      Latrodectus is a loader written in C++.

    • Detect larodectus Loader variant 2

    • Enumerates connected drives

      Attempts to read the root path of hard drives other than the default C: drive.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

3
T1012

Peripheral Device Discovery

2
T1120

System Information Discovery

2
T1082

Tasks