Cynet Detection Report: Ragnar Locker Ransomware
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 Software - T1592.002 Windows Service - T1543.003 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | 1c859810-6262-4179-9393-91b6e7cb9626 |
Fingerprint | 842dc9198ab63a5b |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | July 15, 2022, 2:15 p.m. |
Added to db | Sept. 26, 2022, 9:32 a.m. |
Last updated | Nov. 17, 2024, 6:49 p.m. |
Headline | Cynet Detection Report: Ragnar Locker Ransomware |
Title | Cynet Detection Report: Ragnar Locker Ransomware |
Detected Hints/Tags/Attributes | 39/1/14 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | File | 748 | kernel32.dll |
|
Details | File | 351 | recycle.bin |
|
Details | File | 243 | autorun.inf |
|
Details | File | 120 | boot.ini |
|
Details | File | 90 | bootfont.bin |
|
Details | File | 99 | bootsect.bak |
|
Details | File | 196 | desktop.ini |
|
Details | File | 101 | iconcache.db |
|
Details | File | 193 | ntuser.dat |
|
Details | File | 100 | ntuser.dat.log |
|
Details | File | 66 | ntuser.ini |
|
Details | File | 143 | thumbs.db |
|
Details | File | 1 | rgnr_25a5382c.txt |
|
Details | File | 1 | rangar.exe |