Massive Ransomware Attack Targets VMware ESXi Servers
Common Information
Type Value
UUID 6333fd1d-0bc8-4d81-bba2-4ae29b23ef20
Fingerprint bca21c7324ff8243
Analysis status DONE
Considered CTI value 2
Text language
Published Feb. 6, 2023, midnight
Added to db Oct. 24, 2023, 1:29 p.m.
Last updated Nov. 17, 2024, 6:56 p.m.
Headline Massive Ransomware Attack Targets VMware ESXi Servers
Title Massive Ransomware Attack Targets VMware ESXi Servers
Detected Hints/Tags/Attributes 74/3/19
Attributes
Details Type #Events CTI Value
Details CVE 66
cve-2021-21974
Details Domain 9
encrypt.sh
Details Domain 9
vmtools.py
Details File 2
1.vmdk
Details File 816
index.html
Details File 12
index1.html
Details File 9
vmtools.py
Details sha256 6
11b1b2375d9d840912cfd1f0d0d04d93ed0cddb0ae4ddb550a5b62cd044d6b66
Details sha256 6
10c3b6b03a9bf105d264a8e7f30dcab0a6c59a414529b0af0a6bd9f1d2984459
Details MITRE ATT&CK Techniques 420
T1204
Details MITRE ATT&CK Techniques 695
T1059
Details MITRE ATT&CK Techniques 80
T1064
Details MITRE ATT&CK Techniques 122
T1543
Details MITRE ATT&CK Techniques 265
T1222
Details MITRE ATT&CK Techniques 627
T1027
Details MITRE ATT&CK Techniques 1006
T1082
Details MITRE ATT&CK Techniques 585
T1083
Details MITRE ATT&CK Techniques 185
T1518
Details MITRE ATT&CK Techniques 444
T1071