Anubis

Compare
anubis logo anubis logo
Parsing: enabled Known RaaS Captcha in place

View crypto

Description

Anubis is a financially motivated cybercrime group primarily known for its banking trojan operations but also linked to ransomware activity targeting corporate networks. First identified in 2016 and evolving over time, Anubis ransomware attacks have targeted Windows systems, often deployed after initial compromises by the Anubis banking malware or other access vectors such as phishing, malicious email attachments, or exploitation of unpatched vulnerabilities. The group’s ransomware encrypts files using strong symmetric encryption algorithms, appending distinctive extensions and delivering ransom notes with payment instructions via Tor. Anubis has targeted multiple sectors worldwide, including finance, retail, and government, often combining ransomware with credential theft and data exfiltration to maximize pressure on victims. Its infrastructure and tactics overlap with other financially motivated actors, suggesting possible affiliate or shared tool usage within broader cybercriminal ecosystems.

External Analysis5
External Analysis
https://www.bleepingcomputer.com/news/security/anubis-banking-trojan-targets-android-users
https://www.sentinelone.com/blog/anubis-android-banking-trojan-analysis
https://www.trendmicro.com/en_us/research/19/j/anubis-malware-family-returns-with-new-variants.html
https://blog.cyble.com/2023/06/14/anubis-banking-trojan-targets-multiple-countries
https://www.cisa.gov/news-events/analysis-reports/ar22-187a
Other2
Other
https://x.com/Anubis__media
https://xss.is/members/400498/
Urls1
Url
Status
Screen
Uptime 30d
Health
http://om6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onion/ Down Screen
33%
Activity (interactive) 26
Activity charts
Posts26
Date Title Description Screen
Dermatology Associates Leak of clinic customer data.
Mayco International [www.maycointernational.com] Data breach at automotive industry leader. Post screen
Mayco International Data breach at automotive industry leader. Post screen
Goodfellow & Schuettlaw Personal data, confidential documents, and more. Post screen
Paterson & Dowding Family Lawyers Law firm data breach Post screen
Aussie Fluid Power An Australian engineering leader has fallen victim to a cyberattack causing a data breach. Post screen
Maine Oxy Financial data breach Post screen
Den Hartogh Logistics Data leak at one of the world's leading logistics service providers Post screen
One law firm in Canada It seems they have decided to play silent. Post screen
DRL Group Customer data leak Post screen
Storage King Major personal data leak Post screen
DRL group Customer data leak Post screen
Alan Shintani, Inc Photos and blueprints of government facilities. Post screen
GCC of America, inc. Data breach at one of the largest cement and concrete producers in North America. Post screen
TRAF Industrial Products Inc Data breach at an aerospace and defense contractor. Post screen
Grand Rapids Controls The 150 GB leak involves confidential documents and NDA agreements with companies such as Ford, Bentley, Lear, and others. Post screen
Advanced HPC Leakage of internal documents at a company engaged in the development and implementation of HPC systems for science and defence. Post screen
Disneyland Paris Confidential Disneyland documents. Post screen
Parkway Construction LLC Blueprints of L3Harris, General Atomics and Virgin Galactic. Post screen
Two Kings Casino Resort Leaked ultra-detailed blueprints of a casino that plans a grand opening in 2026. Post screen
DG2 Design Blueprints of M1 Bank, Mastercard and so on. Post screen
Ambleside Breach of personal data of patients, company employees, and dozens of incidents, including Patient abuse. Post screen
Pound Road Medical Centre Post screen
Summit Home Health, INC. Post screen
Comercializadora S&E Perú Post screen
First Defense Fire Protection Post screen
Note