CY3 Virus Ransomware [.CY3 Files] Remove + Restore Files
Tags
country: | Australia Netherlands Germany France Greece India Italy Spain Poland Portugal United Kingdom United States Of America |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Direct Email Account - T1087.003 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Software - T1592.002 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | c837e275-dd52-4828-8e79-e6f804102ec0 |
Fingerprint | 86023a792567bed1 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Jan. 5, 2023, 2:55 p.m. |
Added to db | Jan. 5, 2023, 9:13 p.m. |
Last updated | Nov. 17, 2024, 5:56 p.m. |
Headline | CY3 Virus Ransomware [.CY3 Files] Remove + Restore Files |
Title | CY3 Virus Ransomware [.CY3 Files] Remove + Restore Files |
Detected Hints/Tags/Attributes | 68/3/18 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://sensorstechforum.com/cy3-virus-files/ |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 163 | ✔ | — | https://media.cert.europa.eu/rss?type=category&id=Malware&language=en&duplicates=false | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 84 | airmail.cc |
|
Details | Domain | 83 | tuta.io |
|
Details | Domain | 162 | localbitcoins.com |
|
Details | Domain | 68 | www.coindesk.com |
|
Details | Domain | 24 | 420blaze.it |
|
Details | Domain | 167 | tutanota.com |
|
Details | Domain | 544 | sensorstechforum.com |
|
Details | 4 | ronrivest@airmail.cc |
||
Details | 1 | ronrivest@tuta.io |
||
Details | 1 | cybercrypt@tutanota.com |
||
Details | File | 65 | info.txt |
|
Details | File | 51 | picture.jpg |
|
Details | Url | 52 | https://localbitcoins.com/buy_bitcoins |
|
Details | Url | 41 | http://www.coindesk.com/information/how-can-i-buy-bitcoins |
|
Details | Windows Registry Key | 493 | HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run |
|
Details | Windows Registry Key | 582 | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run |
|
Details | Windows Registry Key | 470 | HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce |
|
Details | Windows Registry Key | 480 | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce |