BitCrypt
Tags
attack-pattern: | Data Control Panel - T1218.002 Software - T1592.002 |
Common Information
Type | Value |
---|---|
UUID | cbc12952-aec3-4494-9f49-49626c76fa8f |
Fingerprint | b66b0bfe0c7f237b |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | March 7, 2014, 1 p.m. |
Added to db | Jan. 18, 2023, 7:50 p.m. |
Last updated | Nov. 18, 2024, 1:38 a.m. |
Headline | Шифровальщики-вымогатели The Digest "Crypto-Ransomware" |
Title | BitCrypt |
Detected Hints/Tags/Attributes | 27/1/17 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | http://id-ransomware.blogspot.com/2014/03/bitcrypt-ransomware.html |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | www.bitcrypt.info |
|
Details | Domain | 1 | kphijmuo2x5expag.tor2web.com |
|
Details | Domain | 5 | www.torproiect.org |
|
Details | Domain | 1 | kphijmuo2x5expag.onion |
|
Details | File | 1 | bitcrypt.txt |
|
Details | File | 1 | bitcrypt.inf |
|
Details | File | 26 | torbrowser.html |
|
Details | File | 117 | taskmgr.exe |
|
Details | File | 79 | regedit.exe |
|
Details | File | 2127 | cmd.exe |
|
Details | Windows Registry Key | 1 | HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal |
|
Details | Windows Registry Key | 2 | HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network |
|
Details | Windows Registry Key | 20 | HKEY_CURRENT_USER\Control |
|
Details | Windows Registry Key | 1 | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ccw |
|
Details | Windows Registry Key | 1 | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ccw\OpenWithList |
|
Details | Windows Registry Key | 2 | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts |
|
Details | Windows Registry Key | 582 | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run |