Malteiro
Aliases: None listed
Malteiro is a financially motivated criminal group that is likely based in Brazil and has been active since at least November 2019. The group operates and distributes the Mispadu banking trojan via a Malware-as-a-Service (MaaS) business model. Malteiro mainly targets victims throughout Latin America (particularly Mexico) and Europe (particularly Spain and Portugal).
Open interactive actor investigation
ATT&CK techniques
T1204.002
Malicious FileT1555.003
Credentials from Web BrowsersT1055.001
Dynamic-link Library InjectionT1657
Financial TheftT1082
System Information DiscoveryT1059.005
Visual BasicT1027.013
Encrypted/Encoded FileT1518.001
Security Software DiscoveryT1566.001
Spearphishing AttachmentT1555
Credentials from Password StoresT1140
Deobfuscate/Decode Files or InformationT1614.001
System Language Discovery
Malicious FileT1555.003
Credentials from Web BrowsersT1055.001
Dynamic-link Library InjectionT1657
Financial TheftT1082
System Information DiscoveryT1059.005
Visual BasicT1027.013
Encrypted/Encoded FileT1518.001
Security Software DiscoveryT1566.001
Spearphishing AttachmentT1555
Credentials from Password StoresT1140
Deobfuscate/Decode Files or InformationT1614.001
System Language Discovery