Satan's Doom Crypter
Tags
attack-pattern: | Data Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | 342b8c1d-f829-496b-b764-82bfa38ed1f5 |
Fingerprint | 2eb53a7fd77d5ebb |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Dec. 15, 2017, 1:55 a.m. |
Added to db | Jan. 18, 2023, 7:53 p.m. |
Last updated | Nov. 17, 2024, 5:54 p.m. |
Headline | Шифровальщики-вымогатели The Digest "Crypto-Ransomware" |
Title | Satan's Doom Crypter |
Detected Hints/Tags/Attributes | 22/1/13 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 396 | protonmail.com |
|
Details | Domain | 65 | imgur.com |
|
Details | Domain | 1 | www.doulciactivator-registration.nl |
|
Details | 1 | cr7213uds32s@protonmail.com |
||
Details | File | 55 | read_it.txt |
|
Details | File | 17 | hidden-tear.exe |
|
Details | File | 1 | tmp5de7.tmp |
|
Details | File | 31 | tmp.exe |
|
Details | File | 7 | ransom.jpg |
|
Details | File | 1 | l6xzvls.jpg |
|
Details | File | 1 | unlock.rar |
|
Details | File | 1 | c:\unlock.rar |
|
Details | IPv4 | 1 | 185.182.56.137 |