Tastylock CryptoMix
Tags
attack-pattern: | Server - T1583.004 Server - T1584.004 |
Common Information
Type | Value |
---|---|
UUID | 5252ce9b-9f2a-4055-93b0-dca03dea60e2 |
Fingerprint | 3700fc6e44746aba |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Dec. 26, 2017, 4:43 p.m. |
Added to db | Jan. 18, 2023, 7:53 p.m. |
Last updated | Nov. 17, 2024, 10:40 p.m. |
Headline | Шифровальщики-вымогатели The Digest "Crypto-Ransomware" |
Title | Tastylock CryptoMix |
Detected Hints/Tags/Attributes | 15/1/12 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 158 | aol.com |
|
Details | 2 | t_tasty@aol.com |
||
Details | File | 1 | 1tasty.exe |
|
Details | File | 26 | _help_instruction.txt |
|
Details | File | 2126 | cmd.exe |
|
Details | File | 409 | c:\windows\system32\cmd.exe |
|
Details | File | 345 | vssadmin.exe |
|
Details | File | 1 | bc8e11c52e.exe |
|
Details | File | 1 | %allusersprofile%\bc8e11c52e.exe |
|
Details | md5 | 1 | 30A877A2136A7E24D444157B15AE5D3C |
|
Details | md5 | 1 | 5ABF69D81E581666A4EAB15C2080F86E |
|
Details | md5 | 1 | 067CAA001A4D3B12F9F317001D5B1BFE |