2017-03-15 - PSEUDO-DARKLEECH RIG EK SENDS CERBER RANSOMWARE

NOTICE:

ASSOCIATED FILES:

  • 2017-03-15-pseudoDarkleech-Rig-EK-sends-Cerber-ransomware-1st-run.pcap   (797,089 bytes)
  • 2017-03-15-pseudoDarkleech-Rig-EK-sends-Cerber-ransomware-2nd-run.pcap   (406,889 bytes)
  • 2017-03-12-pseudoDarkleech-Rig-EK-artifact-both-runs-o32.tmp.txt   (1,141 bytes)
  • 2017-03-15-Cerber-ransomware_READ_THIS_FILE_KVGVA_.hta   (77,345 bytes)
  • 2017-03-15-Cerber-ransomware_READ_THIS_FILE_L5KW_.jpeg   (1,975,631 bytes)
  • 2017-03-15-Cerbe-ransomwarer_READ_THIS_FILE_M0761P_.txt   (1,337 bytes)
  • 2017-03-15-page-from-jesuisanimateur_fr-with-injected-pseudoDarkleech-script-1st-run.txt   (157,692 bytes)
  • 2017-03-15-page-from-jesuisanimateur_fr-with-injected-pseudoDarkleech-script-2nd-run.txt   (156,494 bytes)
  • 2017-03-15-pseudoDarkleech-Rig-EK-1st-run-flash-exploit.swf   (14,956 bytes)
  • 2017-03-15-pseudoDarkleech-Rig-EK-1st-run-landing-page.txt   (117,920 bytes)
  • 2017-03-15-pseudoDarkleech-Rig-EK-1st-run-payload-Cerber-ransomware-n0ofzkos.exe   (257,225 bytes)
  • 2017-03-15-pseudoDarkleech-Rig-EK-2nd-run-flash-exploit.swf   (14,942 bytes)
  • 2017-03-15-pseudoDarkleech-Rig-EK-2nd-run-landing-page.txt   (57,857 bytes)
  • 2017-03-15-pseudoDarkleech-Rig-EK-2nd-run-payload-Cerber-ransomware-wyprkl4v.exe   (257,225 bytes)

 

DETAILS

 

TRAFFIC FROM AN INFECTION:

 

FILE HASHES:

 

Click here to return to the main page.