BandarChor
Revision as of 21:28, 10 August 2015 by Eric.freyssinet (talk | contribs)
(Botnet) Link to the old Wiki page : [1] / Google search: [2]
BandarChor | |
---|---|
Alias | |
Group | Cryptolocker |
Parent | |
Sibling | |
Family | |
Relations | Variants: Sibling of: |
Target | |
Origin | |
Distribution vector | |
UserAgent | |
CCProtocol | HTTP (Centralized) |
Activity | 2014 / |
Status | |
Language | |
Programming language | |
Operation/Working group |
Introduction
Related domains: martyanovdrweb.com
- www.fuck-isil.com
- www.ahalaymahalay.com
- kapustakapaet.com
- www.decryptindia.com
- www.enibeniraba.com
- www.netupite.com
- 89025840.com
- xsmailsos.com
- sosxsmaillockedwriteonxsmailindia.com
- baitforany.com
- euvalues.com
Features
Associated images
Checksums / AV databases
- 31aa8ec187e1241a94127336996f9cb38719eb9b | Virustotal
- 4b356b88fb3a3dce1f009e4e92cd4a59383e0764 | Virustotal
- 5f71be645e8ac995555a891087b46ed357386dbe | Virustotal
- afd4216e93a82feebafd3a68e9308ca4b0b54372 | Virustotal
- b4362fcd75fd071fc8237c543c56df5736b8e177 | Virustotal
- ba8909eef5ee280ae43b935cf4ae38ccf21bde56 | Virustotal
- de7ced27456a1e4581d6a4bf126f56061b7f9859 | Virustotal
- F-Secure search: Trojan:W32/BandarChor
Publications
Author | Editor | Year | |
---|---|---|---|
Ransomware report: the rise of BandarChor | FSLabs | F-Secure | 2015 |