Ransomware Roundup - Cl0p | FortiGuard Labs
Common Information
Type Value
UUID bfe603d1-c53c-4d49-9e5f-d32de9acbc4e
Fingerprint 8730a9db0616b65e
Analysis status DONE
Considered CTI value 2
Text language
Published July 21, 2023, 1:06 p.m.
Added to db July 21, 2023, 6:28 p.m.
Last updated Nov. 17, 2024, 6:53 p.m.
Headline Ransomware Roundup - Cl0p
Title Ransomware Roundup - Cl0p | FortiGuard Labs
Detected Hints/Tags/Attributes 89/4/32
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 117 Fortinet All Blogs https://feeds.feedburner.com/fortinet/blogs 2024-08-30 22:08
Details 122 Fortinet Threat Research Blog https://feeds.fortinet.com/fortinet/blog/threat-research 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details CVE 243
cve-2023-34362
Details CVE 140
cve-2023-27350
Details CVE 54
cve-2023-27351
Details CVE 20
cve-2021-27101
Details CVE 16
cve-2021-27102
Details CVE 17
cve-2021-27103
Details CVE 17
cve-2021-27104
Details CVE 217
cve-2020-1472
Details CVE 115
cve-2023-0669
Details CVE 17
cve-2021-35211
Details CVE 70
cve-2022-1388
Details CVE 397
cve-2021-44228
Details Domain 2
papercut.ng
Details Domain 7
ms.windows
Details Domain 2
f5.big-ip.icontrol.rest
Details File 9
clopreadme.txt
Details File 3
readme_readme.txt
Details File 2
progress.mov
Details File 14
command.exe
Details File 2
big-ip.ico
Details File 13
apache.log
Details File 49
error.log
Details File 41
code.exe
Details sha256 4
3320f11728458d01eef62e10e48897ec1c2277c1fe1aa2d471a16b4dccfc1207
Details sha256 5
d0cde86d47219e9c56b717f55dcdb01b0566344c13aa671613598cab427345b9
Details sha256 1
d36766cbc149d7f79654d2810ffe2fd3b1a6487fe3aff6ff010e664b60493cf0
Details sha256 1
1687eda911c5129f3189d7e1ad31430856d7732fe870eb49971298367b98189c
Details sha256 2
f1b8c7b2d20040f1dd9728de9808925fdcf035a1a289d42f63e5faa967f50664
Details sha256 3
343cb2d5900f5fe4abd5442a4a18541753fbb6ca5ff4ee7f2c312ed96e413335
Details sha256 1
968307a367471e25bef58b0d4687ab4fdf34539bbfb603b5b19ae99d4d0c0340
Details sha256 4
09d6dab9b70a74f61c41eaa485b37de9a40c86b6d2eae7413db11b4e6a8256ef
Details Threat Actor Identifier - FIN 127
FIN11