General

  • Target

    3424-82-0x0000000002A80000-0x0000000002A92000-memory.dmp

  • Size

    72KB

  • MD5

    575808d01057b4263088d7953f78f3f1

  • SHA1

    7a963c14fdbb879ae5d39fc9b8900b0afd78a297

  • SHA256

    d1d691babaacf66e54d48439cc667be062f05c1a1d08c67e6c0a185010f30c73

  • SHA512

    4b12c2175b54433927dd9e91c0ba95c8630365e3a5101535b7e6da939976d29182c5fb586a7a8a968c9b0089b3cfb246d2dd93f3a49b99b3d41c891b3d29c989

  • SSDEEP

    768:uX755uspugOulWKxZu4faayRHXrqCzlFC+OuyApekKM:guYO84ayR7qAlU

Score
10/10

Malware Config

Extracted

Family

latrodectus

C2

https://workspacin.cloud/live/

https://illoskanawer.com/live/

Signatures

  • Detect larodectus Loader variant 2 1 IoCs
  • Latrodectus family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 3424-82-0x0000000002A80000-0x0000000002A92000-memory.dmp
    .dll windows:6 windows x64 arch:x64

    db7aeb75528663639689f852fd366243


    Headers

    Imports

    Exports

    Sections