9 Commits
Author SHA1 Message Date
Anthony B d1db24bc89 Add Ransomware.YggGuru sample
Go-based ransomware (x64, UPX packed) using AES-256-GCM encryption.
C2: ygg.guru/api/health. Exfiltrates encryption keys via HTTP POST.
Demands 0.5 BTC (1 BTC after 72h).
SHA-256: c3b71a279800e79535b096b110c9cf27ff16b92cf0a18200dd777a9abae9a5e7
VT: 12/72 detections.
2026-03-09 01:46:11 +01:00
tisf a7f3adc5f5 dbVer --> 1750498935000
Some fresh wipers
2025-06-21 17:04:57 +07:00
tisf 61226e5992 db -> 1712294860000
DB update to include mustag panda, reddelta, earth praeta, earth krahang, ghoset, lockbit & more
2024-04-05 12:49:39 +07:00
d0n0x d8a819d402 Added NOBELIUM 2023-04-03 13:58:45 -07:00
d0n0x 7f7e884bb3 added Raccoon Stealer v2 2022-08-20 00:37:21 +03:00
d0n0x 3227d5ac3a Added HiveRansomware 2022-08-06 14:57:27 +03:00
d0n0x 67d66b79bf Added Ransomware.XData, issue #194 2022-06-18 22:13:44 +03:00
tisf d4d530f9a7 db --> 1638767036000
Upgrading DB to 1638767036000 with some patchups as well as the new malware samples: Jerusalem, CainXPii, Talerat, Hells, Petya and FamousSparrow samples.
2021-12-06 12:07:21 +07:00
tisf b013182f34 Revamp of malware folder + new samples
Original source code for;
Dendroid, TinyBanker, litehttp, Mirai and AgentTesla.
2021-06-28 14:06:09 +03:00