Inactive ransomware operator
← All groupsscarab
4 victims indexed · first seen 10 years ago · last activity 8 years ago
At a glance
- Status
- inactive
- First seen
- 10 years ago
- Last activity
- 8 years ago
- Primary sector
- Government Facilities · 2 hits
About
References
14 linksExternal sources curated by the MISP threat-intel community.
- bleepingcomputer.com/news/security/scarab-ransomware-pushed-via-massive-spam-campaign/
- labsblog.f-secure.com/2017/11/23/necurs-business-is-booming-in-a-new-partnership-with-scarab-ransomware/
- blogs.forcepoint.com/security-labs/massive-email-campaign-spreads-scarab-ransomware
- twitter.com/malwrhunterteam/status/933643147766321152
- myonlinesecurity.co.uk/necurs-botnet-malspam-delivering-a-new-ransomware-via-fake-scanner-copier-messages/
- twitter.com/demonslay335/status/1006222754385924096
- twitter.com/demonslay335/status/1006908267862396928
- twitter.com/demonslay335/status/1007694117449682945
- twitter.com/demonslay335/status/1049316344183836672
- bleepingcomputer.com/news/security/the-week-in-ransomware-october-12th-2018-notpetya-gandcrab-and-more/
- twitter.com/Amigo_A_/status/1039105453735784448
- twitter.com/GrujaRS/status/1072057088019496960
- id-ransomware.blogspot.com/2017/06/scarab-ransomware.html
- ransomlook.io/group/scarab
Timeline
4 monthsTop countries
Top sectors
MITRE ATT&CK
3 techniques · 3 tacticsTactics
Recent victims
Loading…
Source
Updated 8 years agoData on this page is sourced from the group's own leak posts, cross-checked with public ransomware trackers (RansomLook, ransomware.live, RansomWatch), MITRE ATT&CK, and our own Tor and Telegram crawlers. This is a public observatory page — share freely.
