Major, Bmps
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | 0c57a353-aa32-4a19-9262-ef57969047e3 |
Fingerprint | 26b67a5a70de1a01 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | April 4, 2019, 8:44 a.m. |
Added to db | Jan. 18, 2023, 7:55 p.m. |
Last updated | Nov. 17, 2024, 10:40 p.m. |
Headline | Шифровальщики-вымогатели The Digest "Crypto-Ransomware" |
Title | Major, Bmps |
Detected Hints/Tags/Attributes | 36/1/87 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | http://id-ransomware.blogspot.com/2019/04/major-bmps-ransomware.html |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 167 | tutanota.com |
|
Details | Domain | 3 | site.you |
|
Details | Domain | 162 | localbitcoins.com |
|
Details | Domain | 68 | www.coindesk.com |
|
Details | Domain | 396 | protonmail.com |
|
Details | Domain | 1 | pizcheks.info |
|
Details | Domain | 1 | rinugsof.host |
|
Details | Domain | 13 | o2.pl |
|
Details | Domain | 911 | any.run |
|
Details | Domain | 35 | tutamail.com |
|
Details | Domain | 158 | aol.com |
|
Details | Domain | 144 | cock.li |
|
Details | Domain | 1 | rinugsof.hostrinugsof.host |
|
Details | Domain | 1 | barclyonline.com |
|
Details | Domain | 1 | trk.yourmobistyle.com |
|
Details | Domain | 1 | pastilon.com |
|
Details | Domain | 1 | xxsxzw.info |
|
Details | Domain | 1 | www.tagvault.org |
|
Details | Domain | 2 | www.interred.de |
|
Details | Domain | 1 | yourservice.live |
|
Details | 1 | bmps@tutanota.com.major |
||
Details | 1 | xlsx@tutanota.com.core |
||
Details | 1 | img_123.jpg.15031736919164.bmps@tutanota.com.major |
||
Details | 1 | img_123.jpg.15031736919164.xlsx@tutanota.com.core |
||
Details | 1 | bmps@tutanota.com |
||
Details | 1 | bmps@protonmail.com |
||
Details | 1 | xlsx@tutanota.com |
||
Details | 1 | xlxs@tutanota.com.core |
||
Details | 1 | 15033918869506.xlxs@tutanota.com.core |
||
Details | 1 | mikrotik@tutamail.com.cube |
||
Details | 1 | mikrotik@tutamail.com |
||
Details | 1 | paydear@aol.com |
||
Details | 1 | 15021807446840.rootcopper@tutanota.com.mars |
||
Details | 1 | rootcopper@aol.com |
||
Details | 1 | rootcopper@tutanota.com |
||
Details | 1 | rootcopper@protonmail.com |
||
Details | 1 | id-xxxxxxxxxxxxxx.nordfox@tutanota.com.legacy |
||
Details | 1 | nordfox@tutanota.com |
||
Details | 1 | nordfox@protonmail.com |
||
Details | 1 | nordfox@aol.com |
||
Details | 1 | foxnitro@tutanota.com |
||
Details | 1 | foxnitro@aol.com |
||
Details | 1 | foxnitro@protonmail.com |
||
Details | 1 | ex_parvis@aol.com.air |
||
Details | 1 | image_001.png.12781717671972518758.ex_parvis@aol.com.air |
||
Details | 1 | bootsect.bak.12781717671972518758.ex_parvis@aol.com.air |
||
Details | 1 | ex_parvis@aol.com |
||
Details | 1 | ex_parvis@tutanota.com |
||
Details | 1 | ex_parvis@protonmail.com |
||
Details | 1 | ad_finem@tutanota.com.onix |
||
Details | 1 | 19892708981972527476.ad_finem@tutanota.com.onix |
||
Details | 1 | ad_finem@tutanota.com |
||
Details | 1 | adfinem001@cock.li |
||
Details | 1 | ad_finem001@protonmail.com |
||
Details | File | 3 | com.core |
|
Details | File | 1 | img_123.jpg |
|
Details | File | 1 | 15031736919164.bmp |
|
Details | File | 1 | 15031736919164.xlsx |
|
Details | File | 33 | read_me.txt |
|
Details | File | 1 | read_me.core |
|
Details | File | 12 | doc.docx |
|
Details | File | 2 | xls.xlsx |
|
Details | File | 2 | pdf.jpg |
|
Details | File | 2 | bmp.txt |
|
Details | File | 2126 | cmd.exe |
|
Details | File | 105 | bcdedit.exe |
|
Details | File | 43 | wbadmin.exe |
|
Details | File | 345 | vssadmin.exe |
|
Details | File | 240 | wmic.exe |
|
Details | File | 1122 | svchost.exe |
|
Details | File | 1 | faktura.tar |
|
Details | File | 1 | faktura_8800.vbs |
|
Details | File | 1 | pizcheks.inf |
|
Details | File | 8 | o2.pl |
|
Details | File | 1 | faktura_8800.tar |
|
Details | File | 3 | com.cub |
|
Details | File | 1 | read_me.cub |
|
Details | File | 1 | ckoufc.exe |
|
Details | File | 20 | com.ai |
|
Details | File | 1 | image_001.png |
|
Details | File | 99 | bootsect.bak |
|
Details | File | 1 | try_to_read.html |
|
Details | File | 1 | xxsxzw.inf |
|
Details | Pdb | 2 | wmic.pdb |
|
Details | Pdb | 1 | wscript.pdb |
|
Details | Url | 52 | https://localbitcoins.com/buy_bitcoins |
|
Details | Url | 41 | http://www.coindesk.com/information/how-can-i-buy-bitcoins |