Fog Ransomware – Technical Analysis | Blog | Dark Atlas | Dark Web Monitoring Platform | Compromised Credentials Monitoring | Account Takeover Prevention Platform | Threat Intelligence | Buguard
Tags
Common Information
Type | Value |
---|---|
UUID | 18c2cc08-3018-46e1-a3d1-e4b92d3db536 |
Fingerprint | a7103d742e070890 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Oct. 13, 2024, midnight |
Added to db | Oct. 24, 2024, 11:43 a.m. |
Last updated | Nov. 17, 2024, 6:56 p.m. |
Headline | Fog Ransomware – Technical Analysis |
Title | Fog Ransomware – Technical Analysis | Blog | Dark Atlas | Dark Web Monitoring Platform | Compromised Credentials Monitoring | Account Takeover Prevention Platform | Threat Intelligence | Buguard |
Detected Hints/Tags/Attributes | 63/3/17 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://darkatlas.io/blog/fog-ransomware-technical-analysis |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | File | 3 | dbglog.sys |
|
Details | File | 748 | kernel32.dll |
|
Details | File | 533 | ntdll.dll |
|
Details | File | 345 | vssadmin.exe |
|
Details | sha1 | 5 | 83f00af43df650fda2c5b4a04a7b31790a8ad4cf |
|
Details | sha1 | 5 | 507b26054319ff31f275ba44ddc9d2b5037bd295 |
|
Details | sha1 | 5 | e1fb7d15408988df39a80b8939972f7843f0e785 |
|
Details | sha1 | 5 | 44a76b9546427627a8d88a650c1bed3f1cc0278c |
|
Details | sha1 | 5 | f7c8c60172f9ae4dab9f61c28ccae7084da90a06 |
|
Details | MITRE ATT&CK Techniques | 695 | T1059 |
|
Details | MITRE ATT&CK Techniques | 333 | T1059.003 |
|
Details | MITRE ATT&CK Techniques | 585 | T1083 |
|
Details | MITRE ATT&CK Techniques | 176 | T1135 |
|
Details | MITRE ATT&CK Techniques | 298 | T1562.001 |
|
Details | MITRE ATT&CK Techniques | 472 | T1486 |
|
Details | MITRE ATT&CK Techniques | 276 | T1490 |
|
Details | MITRE ATT&CK Techniques | 197 | T1489 |