Inactive ransomware operator
← All groupsGrief
3 victims indexed · first seen 5 years ago · last activity 5 years ago
At a glance
- Status
- inactive
- First seen
- 5 years ago
- Last activity
- 5 years ago
- Onion sites
- 2 known endpoints
- Primary sector
- Education Facilities · 3 hits
About
References
6 linksExternal sources curated by the MISP threat-intel community.
- heimdalsecurity.com/blog/doppelpaymer-gets-a-rebranding
- ransomlook.io/group/grief
- bleepingcomputer.com/news/security/grief-ransomware-linked-to-evil-corp-hackers/
- cisa.gov/news-events/cybersecurity-advisories/aa21-243a
- treasury.gov/news/press-releases/jy0333
- trendmicro.com/en_us/research/21/i/grief-ransomware.html
Timeline
2 monthsTop countries
Top sectors
MITRE ATT&CK
4 techniques · 4 tacticsTactics
Recent victims
Loading…
Onion infrastructure
2 known- http://griefcameifmv4hfr3auozmovz5yi6m3h3dwbuqw7baomfxoxz4qteid.onion
- http://griefcameifmv4hfr3auozmovz5yi6m3h3dwbuqw7baomfxoxz4qteid.onion/
Source
Updated 5 years agoData on this page is sourced from the group's own leak posts, cross-checked with public ransomware trackers (RansomLook, ransomware.live, RansomWatch), MITRE ATT&CK, and our own Tor and Telegram crawlers. This is a public observatory page — share freely.
