Outsider
Tags
attack-pattern: | Data Server - T1583.004 Server - T1584.004 Software - T1592.002 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | 4a5bf807-a9f0-4a47-8081-7c68a6e3873f |
Fingerprint | 1777607f41649a35 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Dec. 7, 2018, 2:23 p.m. |
Added to db | Jan. 18, 2023, 7:54 p.m. |
Last updated | Nov. 17, 2024, 5:54 p.m. |
Headline | Шифровальщики-вымогатели The Digest "Crypto-Ransomware" |
Title | Outsider |
Detected Hints/Tags/Attributes | 39/1/39 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | http://id-ransomware.blogspot.com/2018/12/outsider-ransomware.html |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 7 | memeware.net |
|
Details | Domain | 911 | any.run |
|
Details | Domain | 396 | protonmail.com |
|
Details | Domain | 14 | pm.me |
|
Details | Domain | 1 | sivo.support |
|
Details | Domain | 1 | mbit.support |
|
Details | Domain | 101 | cert.pl |
|
Details | 1 | secureserver@memeware.net |
||
Details | 2 | secureserver-eu@protonmail.com |
||
Details | 1 | ss-eu@pm.me |
||
Details | 1 | support-ssp@pm.me |
||
Details | 1 | support-mapo@pm.me |
||
Details | 1 | support.mbox@pm.me |
||
Details | 1 | sivo.support@pm.me |
||
Details | 1 | support-eus@pm.me |
||
Details | 1 | dubois-dws@pm.me |
||
Details | 1 | mbit.support@pm.me |
||
Details | 1 | support-gomer@pm.me |
||
Details | 1 | team-assist002@pm.me |
||
Details | 1 | cert@cert.pl |
||
Details | File | 3 | how_to_restore_files.txt |
|
Details | File | 2 | security-issue-info.txt |
|
Details | File | 2 | how-to-restore-files.txt |
|
Details | File | 88 | 1.txt |
|
Details | File | 1 | sguard-readme.txt |
|
Details | File | 2 | mapo-readme.txt |
|
Details | File | 15 | private.key |
|
Details | File | 1 | sivo-readme.txt |
|
Details | File | 1 | sivo.exe |
|
Details | File | 1 | guarded-readme.txt |
|
Details | File | 1 | dante-info.txt |
|
Details | File | 1 | mbit-info.txt |
|
Details | File | 1 | gomer-readme.txt |
|
Details | File | 1 | edab-readme.txt |
|
Details | File | 1 | assist-readme.txt |
|
Details | File | 1 | assist.exe |
|
Details | File | 99 | cert.pl |
|
Details | IPv4 | 1 | 31.14.138.107 |
|
Details | Pdb | 1 | d:\output\test\guardo\output\encryptfiles.pdb |