Ransom:Win32/Snatch
AlienVault
· Published 20/12/2025 19:40 · Modified 21/12/2025 01:13
Essential information
- Confidence
- 100/100
- Is family
- No
- Published
- 20/12/2025 19:40
- Modified
- 21/12/2025 01:13
- Revoked
- No
- Author / Source
- AlienVault
- Related entities
- 11 attack patterns (mitre), 3 sectors, 25 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (11)
-
T1059.003 usesWindows Command Shell MITRE
-
T1036 usesMasquerading MITRE
-
T1486 usesData Encrypted for Impact MITRE
-
T1133 usesExternal Remote Services MITRE
-
T1078 usesValid Accounts MITRE
-
TA0010 uses
-
T1583.003 usesVirtual Private Server MITRE
-
T1590 usesGather Victim Network Information MITRE
-
T1490 usesInhibit System Recovery MITRE
-
T1110.001 usesPassword Guessing MITRE
-
T1021.001 usesRemote Desktop Protocol MITRE
Sectors (3)
-
Technology targets
-
Agriculture targets
-
Defense targets
Indicators (25)
-
stix 100/100 Revoked· Valid until 23/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 23/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 23/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 23/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 23/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 23/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 23/12/2024 · Source: AlienVault