Tracking Ransomware End-to-end
Image Description
Common Information
Type Value
UUID d549a056-9159-4f69-8ae6-07c818463d3f
Fingerprint 8d4c879256b55979399ae8a4ca7b0cc8e7564d6c7d3f41368ce5c2c0fbb2b621
Analysis status DONE
Considered CTI value 0
Text language
Published March 22, 2018, 2:04 p.m.
Added to db April 14, 2024, 3:09 a.m.
Last updated Aug. 31, 2024, 4:40 a.m.
Headline Tracking Ransomware End-to-end
Title Tracking Ransomware End-to-end
Detected Hints/Tags/Attributes 162/2/64
Attributes
Details Type #Events CTI Value
Details Domain 6
www.chainalysis.com
Details Domain 7
btc-e.com
Details Domain 6
bithumb.com
Details Domain 2
coin.mx
Details Domain 40
coinbase.com
Details Domain 3
korbit.co.kr
Details Domain 162
localbitcoins.com
Details Domain 3
bitmixer.io
Details Domain 2
coinone.co.kr
Details Domain 84
www.forbes.com
Details Domain 79
blog.checkpoint.com
Details Domain 1
www.tmsi.hu
Details Domain 175
www.zdnet.com
Details Domain 604
www.trendmicro.com
Details Domain 251
www.bleepingcomputer.com
Details Domain 177
www.wired.com
Details Domain 31
www.pcworld.com
Details Domain 70
nakedsecurity.sophos.com
Details Domain 81
blog.malwarebytes.com
Details Domain 13
id-ransomware.malwarehunterteam.com
Details Domain 2
vmray.com
Details Domain 50
cloud.google.com
Details Domain 1
trends.google.com
Details Domain 97
virustotal.com
Details Domain 4127
github.com
Details Domain 8
www.zynamics.com
Details Domain 177
blog.trendmicro.com
Details Domain 12
www.pcrisk.com
Details Domain 8
www.maxmind.com
Details Domain 111
www.justice.gov
Details Domain 18
bitcointalk.org
Details File 1
dp.pdf
Details File 1
wannacry-ransom-will-probably-get-you-nothing-heres-why.html
Details File 1
vxclass.html
Details File 15
www.max
Details File 1205
index.php
Details File 1
followin.html
Details Github username 11
yara-rules
Details Url 1
https://www.chainalysis.com/.
Details Url 1
http://id1.hostname/id2
Details Url 1
https://www.forbes.com/sites/davidwismer/2013/02/06/hand-to-hand-
Details Url 1
https://blog.checkpoint.com/2016/08/16/cerberring
Details Url 1
https://www.tmsi.hu/antidotum-
Details Url 1
http://www.zdnet.com/article/now-cerber-
Details Url 1
https://www.trendmicro.com/vinfo/us/threat-encyclopedia/spam/3621
Details Url 1
https://www.bleepingcomputer.com/news/security/researcher-finds-the-
Details Url 1
https://www.wired.com/story/petya-ransomware-wannacry-mistakes/.
Details Url 1
https://www.pcworld.com/article/3196880/security/paying-the-
Details Url 1
https://nakedsecurity.sophos.com/2016/02/17/locky-ransomware-what-
Details Url 1
https://id-ransomware.malwarehunterteam.com/.
Details Url 1
http://vmray.com
Details Url 1
https://cloud.google.com/vision/.
Details Url 1
https://trends.google.com/trends/.
Details Url 1
http://virustotal.com
Details Url 1
https://github.com/yara-rules/rules.
Details Url 1
https://www.zynamics.com/vxclass.html
Details Url 1
https://www.zynamics.com/bindiff/manual/#chapunderstanding
Details Url 2
http://blog.trendmicro.com/trendlabs-security-intelligence/cerber-
Details Url 1
https://www.pcrisk.com/removal-guides/9963-cryptxxx-ransomware.
Details Url 1
https://www.maxmind.com/en/geoip2-precision-insights.
Details Url 1
https://www.justice.gov/usao-ndca/pr/russian-national-and-bitcoin-
Details Url 1
https://bitcointalk.org/index.php?topic=279249.0
Details Url 1
https://bitcointalk.org/index.php?topic=321228.0
Details Url 2
https://www.fireeye.com/blog/threat-