SkyFile
Tags
attack-pattern: | Data Model Applescript - T1059.002 Keychain - T1634.001 Keychain - T1555.001 Keychain - T1579 Applescript - T1155 Keychain - T1142 |
Common Information
Type | Value |
---|---|
UUID | ec788da7-c727-4bf0-9b56-9ae9a7dccafe |
Fingerprint | 3460617a32682efa |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | April 6, 2018, 6:14 a.m. |
Added to db | Sept. 26, 2022, 9:32 a.m. |
Last updated | Nov. 17, 2024, 6:55 p.m. |
Headline | Шифровальщики-вымогатели The Digest "Crypto-Ransomware" |
Title | SkyFile |
Detected Hints/Tags/Attributes | 57/1/23 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | http://id-ransomware.blogspot.com/2018/04/skyfile-ransomware.html |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 167 | tutanota.com |
|
Details | Domain | 1 | sis.dm |
|
Details | Domain | 1 | sisx.dm |
|
Details | Domain | 119 | yandex.ru |
|
Details | Domain | 911 | any.run |
|
Details | 1 | getsend@tutanota.com |
||
Details | 1 | lockerfrom@yandex.ru |
||
Details | File | 1122 | svchost.exe |
|
Details | File | 29 | decrypt.txt |
|
Details | File | 1 | hauptwerk.rar |
|
Details | File | 3 | md5.txt |
|
Details | File | 1 | mp4.inf |
|
Details | File | 3 | pack.gz |
|
Details | File | 4 | paf.exe |
|
Details | File | 4 | pkg.tar |
|
Details | File | 1 | qba.tlg |
|
Details | File | 1 | sla.gz |
|
Details | File | 28 | tar.bz2 |
|
Details | File | 131 | tar.gz |
|
Details | File | 1 | tar.md5 |
|
Details | File | 19 | tar.xz |
|
Details | File | 29 | decryptor.exe |
|
Details | MITRE ATT&CK Techniques | 1 | T3001 |