Inactive ransomware operator
← All groupsProlock
2 victims indexed · first seen 6 years ago · last activity 6 years ago
At a glance
- Status
- inactive
- First seen
- 6 years ago
- Last activity
- 6 years ago
- Onion sites
- 1 known endpoint
- Primary sector
- Financial · 1 hits
About
References
27 linksExternal sources curated by the MISP threat-intel community.
- cisoclub.ru/doc/otchet-kompanii-group-ib-ransomware-uncovered-2020-2021/?bp-attachment=group-ib_ransomware_uncovered_2020-2021.pdf
- docs.google.com/spreadsheets/d/1MI8Z2tBhmqQ5X8Wf_ozv3dVjz5sJOs-3
- go.crowdstrike.com/rs/281-OBQ-266/images/Report2021GTR.pdf
- id-ransomware.blogspot.com/2019/10/pwndlocker-ransomware.html
- medium.com/s2wlab/operation-synctrek-e5013df8d167
- news.sophos.com/en-us/2020/07/27/prolock-ransomware-gives-you-the-first-8-kilobytes-of-decryption-for-free/
- norfolkinfosec.com/tinypos-and-prolocker-an-odd-relationship/
- raw.githubusercontent.com/fboldewin/When-ransomware-hits-an-ATM-giant---The-Diebold-Nixdorf-case-dissected/main/When%20ransomware%20hits%20an%20ATM%20giant%20-%20The%20Diebold%20Nixdorf%20case%20dissected%20-%20Group-IB%20CyberCrimeCon2020.pdf
- soolidsnake.github.io/2020/05/11/Prolock_ransomware.html
- web.archive.org/web/20210305181115/https://cisoclub.ru/doc/otchet-kompanii-group-ib-ransomware-uncovered-2020-2021/?bp-attachment=group-ib_ransomware_uncovered_2020-2021.pdf
- bleepingcomputer.com/news/security/new-pwndlocker-ransomware-targeting-us-cities-enterprises/
- bleepingcomputer.com/news/security/pwndlocker-ransomware-gets-pwned-decryption-now-available/
- cert-pa.it/notizie/pwndlocker-si-rinnova-in-prolock-ransomware/
- cert.ssi.gouv.fr/cti/CERTFR-2021-CTI-009/
- cert.ssi.gouv.fr/uploads/CERTFR-2021-CTI-009.pdf
- cronup.com/post/de-ataque-con-malware-a-incidente-de-ransomware
- cyborgsecurity.com/cyborg_labs/hunting-ransomware-inhibiting-system-backup-or-recovery/
- group-ib.com/blog/prolock
- group-ib.com/blog/prolock_evolution
- hornetsecurity.com/en/security-information/qakbot-malspam-leading-to-prolock/
Timeline
2 monthsTop countries
Top sectors
MITRE ATT&CK
3 techniques · 3 tacticsTactics
Recent victims
Loading…
Onion infrastructure
1 known- http://msaoyrayohnp32tcgwcanhjouetb5k54aekgnwg7dcvtgtecpumrxpqd.onion
Source
Updated 6 years agoData on this page is sourced from the group's own leak posts, cross-checked with public ransomware trackers (RansomLook, ransomware.live, RansomWatch), MITRE ATT&CK, and our own Tor and Telegram crawlers. This is a public observatory page — share freely.
