Ragnarlocker

Compare
Parsing: enabled

View crypto

Description

External Analysis49
External Analysis
https://news.sophos.com/en-us/2020/05/21/ragnar-locker-ransomware-deploys-virtual-machine-to-dodge-security
https://www.bleepingcomputer.com/news/security/ransomware-gang-threatens-to-leak-data-if-victim-contacts-fbi-police
https://twitter.com/malwrhunterteam/status/1475568201673105409
https://www.trellix.com/en-us/about/newsroom/stories/threat-labs/analysis-and-protections-for-ragnarlocker-ransomware.html
http://reversing.fun/posts/2021/04/15/unpacking_ragnarlocker_via_emulation.html
http://reversing.fun/reversing/2021/04/15/unpacking_ragnarlocker_via_emulation.html
https://analyst1.com/blog/ransom-mafia-analysis-of-the-worlds-first-ransomware-cartel
https://analyst1.com/file-assets/RANSOM-MAFIA-ANALYSIS-OF-THE-WORLD%E2%80%99S-FIRST-RANSOMWARE-CARTEL.pdf
https://blog.blazeinfosec.com/dissecting-ragnar-locker-the-case-of-edp/
https://blog.bushidotoken.net/2022/05/gamer-cheater-hacker-spy.html
https://blog.cyble.com/2022/01/20/deep-dive-into-ragnar-locker-ransomware-gang/
https://blog.reversing.xyz/docs/posts/unpacking_ragnarlocker_via_emulation/
https://blog.reversing.xyz/reversing/2021/04/15/unpacking_ragnarlocker_via_emulation.html
https://cyware.com/news/ragnar-locker-breached-52-organizations-and-counting-fbi-warns-0588d220/
https://docs.google.com/spreadsheets/d/1MI8Z2tBhmqQ5X8Wf_ozv3dVjz5sJOs-3
https://go.crowdstrike.com/rs/281-OBQ-266/images/Report2021GTR.pdf
https://ics-cert.kaspersky.com/media/KASPERSKY_H1_2020_ICS_REPORT_EN.pdf
https://id-ransomware.blogspot.com/2020/02/ragnarlocker-ransomware.html
https://intel471.com/blog/conti-ransomware-cooperation-maze-lockbit-ragnar-locker
https://ke-la.com/how-ransomware-gangs-find-new-monetization-schemes-and-evolve-in-marketing/
https://krebsonsecurity.com/2020/11/ransomware-group-turns-to-facebook-ads/
https://news.sophos.com/en-us/2020/05/21/ragnar-locker-ransomware-deploys-virtual-machine-to-dodge-security/
https://news.sophos.com/en-us/2021/02/03/mtr-casebook-uncovering-a-backdoor-implant-in-a-solarwinds-orion-server/
https://news.sophos.com/en-us/2022/03/17/the-ransomware-threat-intelligence-center/
https://public.intel471.com/blog/ransomware-as-a-service-2020-ryuk-maze-revil-egregor-doppelpaymer/
https://securelist.com/modern-ransomware-groups-ttps/106824/
https://securelist.com/targeted-ransomware-encrypting-data/99255/
https://seguranca-informatica.pt/ragnar-locker-malware-analysis/
https://symantec.broadcom.com/hubfs/The_Ransomware_Threat_September_2021.pdf
https://twitter.com/AltShiftPrtScn/status/1403707430765273095
https://www.accenture.com/us-en/blogs/cyber-defense/evolving-danger-ransomware-extortion
https://www.accenture.com/us-en/blogs/cyber-defense/moving-left-ransomware-boom
https://www.acronis.com/en-sg/articles/ragnar-locker/
https://www.bleepingcomputer.com/news/security/capcom-hit-by-ragnar-locker-ransomware-1tb-allegedly-stolen/
https://www.bleepingcomputer.com/news/security/fbi-ransomware-gang-breached-52-us-critical-infrastructure-orgs/
https://www.bleepingcomputer.com/news/security/japanese-game-dev-capcom-hit-by-cyberattack-business-impacted/
https://www.bleepingcomputer.com/news/security/ragnarlocker-ransomware-hits-edp-energy-giant-asks-for-10m/
https://www.capcom.co.jp/ir/english/news/pdf/e210413.pdf
https://www.crowdstrike.com/blog/double-trouble-ransomware-data-leak-extortion-part-1
https://www.crowdstrike.com/blog/double-trouble-ransomware-data-leak-extortion-part-1/
https://www.cyborgsecurity.com/cyborg_labs/hunting-ransomware-inhibiting-system-backup-or-recovery/
https://www.hornetsecurity.com/en/security-informationen-en/leakware-ransomware-hybrid-attacks/
https://www.ic3.gov/Media/News/2022/220307.pdf
https://www.mcafee.com/blogs/other-blogs/mcafee-labs/ragnarlocker-ransomware-threatens-to-release-confidential-information
https://www.microsoft.com/security/blog/2020/04/28/ransomware-groups-continue-to-target-healthcare-critical-services-heres-how-to-reduce-risk/
https://www.theregister.com/2022/03/09/fbi_says_ragnar_locker_ransomware/
https://www.trellix.com/en-us/about/newsroom/stories/threat-labs/analysis-and-protections-for-ragnarlocker-ransomware.html
https://www.waterisac.org/system/files/articles/FLASH-MU-000140-MW.pdf
https://www.zdnet.com/article/capcom-quietly-discloses-cyberattack-impacting-email-file-servers/
Ransom notes2
Urls2
Url
Status
Screen
Uptime 30d
Health
http://rgleak7op734elep.onion Down
0%
http://rgleaktxuey67yrgspmhvtnrqtgogur35lwdrup4d3igtbm3pupc4lyd.onion/ Down Screen
50%
File servers7
Url
Status
Screen
Uptime 30d
Health
http://p6o7m73ujalhgkiv.onion Down
0%
http://2dxxyil6kur3qpht2tkklupdgacrcbfun6qf5jmk3hafmt6n6ockbzid.onion Down
0%
http://goh2zbohdiblk23scvtae7delci5cioy73la2lnrduxutxksl7xiscqd.onion Down
0%
http://t2w5byhtkqkaw6m543i6ax3mamfdy7jkkqsduzzfwhfcep4shqqsd5id.onion Down
0%
http://wxbpssv4hiwlcgt4cxam3cznu4feqgf5pqfibbku3x6dwvtcakdkyeid.onion Down
0%
http://xxbsnxdqmthgpydddmuvg7yzy6pdfnlnlepxa5my4mjiqjsee6yidhyd.onion Down
0%
http://7twfgaqyik3xfuu4.onion Down
0%
Chat servers1
Url
Status
Screen
Uptime 30d
Health
http://ragnarmj3hlykxstyanwtgf33eyacccleg45ctygkuw7dkgysict6xyd.onion/ Down Screen
37%
Activity (interactive) 123
Activity charts
Posts123
Date Title Description Screen
Scotbeef Ltd. - Leaks Screen
Eicon Controle Inteligentes Screen
International Presence Ltd - Leaked Screen
Learning Partnership West - Leaked Screen
Groupe Fructa Partner - Leaked Screen
Network Pacific Real Estate - Leak Screen
Astre - Leaked Screen
Stratesys Full data leak Screen
Announcement: COMECA Group going to be Leaked Screen
Announcement: Skatax Accounting company going to be leaked Screen
Retail House - Full Leak Screen
Announcement: Stratesys solutions going to be leaked Screen
Announcement: Stratesys solutions going to b Screen
Announcement: Groupe Fructa Partner will be leaked soon Screen
CITIZEN company LEAKED Screen
Announcement: Retail House going to be LEAKED Screen
Updates: Israel "MYMC" Screen
Israel Medical Center - leaked Screen
DOIT - Canadian IT company allowed leak of its own clients. Screen
Batesville didn't react on appeal and allows Full Leak Screen
Announcement: Batesville Tool & Die, Inc will be leaked in 3 Days Screen
Belize Electricity Limited - Leaked Screen
Portugal Scotturb Data Leaked Screen
Australian Universal Crane Leak Screen
Autlan Metallorum, Mexican Miner Leak Screen
CANTALK, Canadian translation services - Leak Screen
Public Appeal to the CANTALK management Screen
Temporary Leak Page #0013995NTa
New Leak in lawyers company AASP. Screen
New Leak in lawyers company.
AASP claim there was no data leakage! Screen
Hundred thousands of personal data, leak preview Screen
Wrapex Industrial - Leaked Screen
Serena Hotels - Leaked Screen
ITONCLOUD - LEAKED Screen
Essent company - Leaked Screen
Leak Announcement - IT company ITonCLOUD Screen
Belgium company Zwijndrecht - Leaked Screen
DURAVIT A.G. - Announcement before publishing data
DIPF-INTERN - Leaked Screen
Dollmar SpA - Leaked Screen
Fashion company ZIGI NY - Leaked Screen
DMCI Holding Leaked Screen
TANG CAPITAL LEAKED Screen
Avalon luxury transport company - Leaked Screen
AudioQuest Data Leaked Screen
Malayan Flour Mills Bhd. Data Leak Screen
TAP Air Leak of more than 1.5 million of customers and many other. Screen
DDoS instead of the Discuss - Nice try TAP Air Screen
TAP AIR PORTUGAL - 115k personal data leak Screen
TAP Air - First Facts Screen
USA Insurance company - Smith brothers File tree and some proofs
Huge drama for Tap Air Portugal Screen
DESFA - Pipeline company LEAK Screen
Announcement. Action Lab File-tree
Greece pipeline company breached - DESFA Screen
File-tree of Tang Capital Screen
Puma Biotechnology - decided to allow Leaks Screen
GENSCO Inc. - allows Leak Screen
Epec.PL - Lied about the absence of Leak Screen
New Leak: Northern Data Systems Screen
New Leak: Prudential LTG. Screen
Sierra Packaging Leaked Screen
Jonathan Adler Leaks Screen
Germany Corporation "VMT-GmbH" Leaked Screen
Simonson-Lumber decided to be Leaked Screen
Simonson-Lumber Inc. First batch of Data.
International Centre Leaked Screen
Smith Transport Full Leak Screen
GHI Hornos Industriales Fully Leaked Screen
GHI Hornos Industriales first batch of Data (0,1%) Screen
Airspan Networks got Leaked Screen
IT-companies Subex & Sectrio Leaked Screen
Company Group LDLC Screen
Leak of IT company Saksoft Screen
Full Data Leak Linical Screen
Update: Linicals Data Screen
Groupe LDLC is going to be Leaked Screen
Team Computers Ltd. - Leak Screen
LINICAL doesn't care about digital hygiene Screen
Atlas Financial Holdings, Inc. - Leaked Screen
FULL DATA LEAK of Primary Residential Mortgage, Inc. // Screen
Primary Residential Mortgage inc. - Leaked Screen
Who is the real Bad Guys here? Or what recovery experts prefer to keep silent. Screen
Announcement: FTP Screen
GATEWAY Property Management Screen
Software company Xoriant Screen
New Leak GatewayPM Screen
NEW Links for ADATA Screen
ADATA LEAKED Screen
Webhelp's company - XtraSource Screen
Ludwig Pfeiffer Leaked Screen
Grupo SADA Leak Screen
New Data Leak post from Chemical company Screen
Kaye/Bassman International - New "Wall of Shamer" Screen
Cornerstone-BB Group Leaked Screen
Attention, Dassault Falcon Jet updated Screen
Advertising Material: Forest Construction Leaked Screen
LEAK Post Campari Group Screen
Updates with files in EastCoastSeafood Inc. Screen
New "WallofShamer" - East Coast Seafood Inc. Screen
Shasun Chemicals & Drugs Ltd. LEAK Screen
JMA Energy LEAK Screen
New Files For Leak Campari Post Screen
Ragnar_Team Announce of Potential "WallofShamer" Screen
LEAK Post CAPCOM Screen
LEAK post FINSA Screen
Official appeal to DASSAULT FALCON JET Screen
DASSAULT FALCON JET Screen
Security breach of CAPCOM network Screen
Security breach of Campari Group network Screen
BIOLOGICAL E. Ltd. (BE) LEAK POST Screen
Insignia Environmental company. Screen
Astro Industries, Inc. Screen
Bailey&Galyen Attorney at Law Screen
New leaks from SOLTEK PACIFIC Screen
GST Autoleather Company ! Screen
ST Engineering Screen
Leaks from company EDP Group Screen
Leaks from company Omniga GmbH & Co. Screen
Leakage from company Catania, Mahon & Rider, PLLC Screen
Brunner Announce – Hello World ! Screen
Leaks Company Birch Communications inc. Screen
Note