[ALL_FAMILIES]

Latrodectus

loader1 mutex signatures

[BASIC_INFORMATION]

FAMILY_NAME:
Latrodectus
CATEGORY:
LOADER
DESCRIPTION:
Latrodectus is a sophisticated loader malware, considered a successor to IcedID, used to deliver additional payloads and establish persistence on infected systems. It employs advanced evasion techniques, creates a mutex to prevent reinfection, and is distributed primarily via phishing campaigns.
ALIASES:
Latrodectus LoaderBlackWidow
TAGS:
loaderphishingevasionpersistencedllmsi

[QUICK_ACTIONS]

[THREAT_INTELLIGENCE]

ATTRIBUTION:
Unknown
FIRST_OBSERVED:
2023

[SIGMA_RULE]

[STATISTICS]

MUTEX_COUNT:1
THREAT_ACTORS:1
ALIASES:2
TAGS:6
CATEGORY:LOADER
Malware profile loaded successfully

EvilMutex Project v1.0.0

Open Source Threat Intelligence Database