Spyder
Description
(Dr.Web) In December 2020, the Doctor Web virus laboratory was contacted by a telecommunications company based in Central Asia after its employees discovered suspicious files on their corporate network. During the examination, our analysts extracted and studied a malicious sample, which turned out to be one of the backdoors used by the hacker group known as Winnti.
Names
Name |
---|
Spyder |
Category
Malware
Type
- Backdoor
- Loader
Information
- https://news.drweb.com/show/?i=14154&lng=en
- https://www.recordedfuture.com/chinese-group-tag-22-targets-nepal-philippines-taiwan/
- https://hello.global.ntt/-/media/ntt/global/insights/white-papers/the-operations-of-winnti-group.pdf
- https://securitynews.sonicwall.com/xmlpost/chinas-winnti-spyder-module/
- https://www.cybereason.com/blog/operation-cuckoobees-a-winnti-malware-arsenal-deep-dive
Malpedia
Alienvault Otx
Other Information
Uuid
a43f8b27-b8a0-4526-a67e-84b8842c752c
Last Card Change
2022-07-19