CY3 Virus Ransomware [.CY3 Files] Remove + Restore Files
Common Information
Type Value
UUID c837e275-dd52-4828-8e79-e6f804102ec0
Fingerprint 86023a792567bed1
Analysis status DONE
Considered CTI value 0
Text language
Published Jan. 5, 2023, 2:55 p.m.
Added to db Jan. 5, 2023, 9:13 p.m.
Last updated Nov. 17, 2024, 5:56 p.m.
Headline CY3 Virus Ransomware [.CY3 Files] Remove + Restore Files
Title CY3 Virus Ransomware [.CY3 Files] Remove + Restore Files
Detected Hints/Tags/Attributes 68/3/18
Attributes
Details Type #Events CTI Value
Details Domain 84
airmail.cc
Details Domain 83
tuta.io
Details Domain 162
localbitcoins.com
Details Domain 68
www.coindesk.com
Details Domain 24
420blaze.it
Details Domain 167
tutanota.com
Details Domain 544
sensorstechforum.com
Details Email 4
ronrivest@airmail.cc
Details Email 1
ronrivest@tuta.io
Details Email 1
cybercrypt@tutanota.com
Details File 65
info.txt
Details File 51
picture.jpg
Details Url 52
https://localbitcoins.com/buy_bitcoins
Details Url 41
http://www.coindesk.com/information/how-can-i-buy-bitcoins
Details Windows Registry Key 493
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Details Windows Registry Key 582
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
Details Windows Registry Key 470
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce
Details Windows Registry Key 480
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce