Fellatrix is classified as an . It is designed to infiltrate a victim's system, harvest sensitive data, and exfiltrate it to a command-and-control (C2) server. The "2022-12" in the filename indicates the specific build or campaign period, which peaked during the December 2022 holiday season. Key Characteristics
: Scans for browser-based extensions (like MetaMask) and cold wallet files. fellatrix_2022-12.zip
: Captures IP addresses, hardware specs, and screenshots of the desktop. Technical Analysis of the .zip File Fellatrix is classified as an
The .zip archive itself is often a "loader" or contains the final payload. harvest sensitive data