El Machete APT Backdoor Dropper

Malware type
dropper, backdoor
Profile updated
2026-07-07 14:40:14

Targeted industries: government-and-public-sector

Targeted regions: country_code:ve country_code:co country_code:ec

Context

This dropper masquerades itself as Adobe software, titled as Adobe.msi. It is used to executes the python written Backdoor used by this threat actor.

Reports & references

  • research.checkpoint.com — State Sponsored Attack Groups Capitalise On Russia Ukraine War For Cyber Espionage (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Elmachete Dropper 2022 (report)

External references