Inactive ransomware operator
← All groupshddcryptor
aka Mamba · 1 victims indexed · first seen 9 years ago · last activity 9 years ago
At a glance
- Status
- inactive
- Aliases
- Mamba
- First seen
- 9 years ago
- Last activity
- 9 years ago
- Primary sector
- Transportation Systems · 1 hits
About
References
3 linksExternal sources curated by the MISP threat-intel community.
- linkedin.com/pulse/mamba-new-full-disk-encryption-ransomware-family-member-marinho
- blog.trendmicro.com/trendlabs-security-intelligence/bksod-by-ransomware-hddcryptor-uses-commercial-tools-to-encrypt-network-shares-and-lock-hdds/blog.trendmicro.com/trendlabs-security-intelligence/bksod-by-ransomware-hddcryptor-uses-commercial-tools-to-encrypt-network-shares-and-lock-hdds/
- id-ransomware.blogspot.com/2016/09/hddcryptor-ransomware-mbr.html
Timeline
1 monthsTop countries
Top sectors
MITRE ATT&CK
3 techniques · 3 tacticsTactics
Recent victims
Loading…
Source
Updated 9 years agoData on this page is sourced from the group's own leak posts, cross-checked with public ransomware trackers (RansomLook, ransomware.live, RansomWatch), MITRE ATT&CK, and our own Tor and Telegram crawlers. This is a public observatory page — share freely.
