Spyder Backdoor Used by Winnti Threat Group Analyzed by Dr. Web Virus Laboratory
Summary
Dr. Web Virus Laboratory analyzed a backdoor they've named Spyder after it was discovered at a telecommunication company based in Central Asia in December 2020. The backdoor was loaded into the system using the DLL Hijacking method. It's a modular backdoor and can utilize plug-ins it receives from it's C&C server.
Threat Type
Malware, Backdoor
Overview
A new modular backdoor was analyzed by the Doctor Web virus laboratory. It was discovered by a telecommunications company based in Central Asia in De