【図表】
【ブログ】
◆BlackMatterの機能で強化されたランサムウェア最新バージョンLockBit 3.0 (Trendmicro, 2022/08/22)
https://www.trendmicro.com/ja_jp/research/22/h/lockbit-ransomware-group-augments-its-latest-variant--lockbit-3-.html
【関連まとめ記事】
◆全体まとめ
◆マルウェア / Malware (まとめ)
◆ランサムウェア (まとめ)
◆LockBit (まとめ)
https://malware-log.hatenablog.com/entry/LockBit
◆Ransomware: BlackMatter (まとめ)
https://malware-log.hatenablog.com/entry/BlackMatter
【インディケータ情報】
■ハッシュ情報(Sha256) - LockBit 3.0 -
80e8defa5377018b093b5b90de0f2957f7062144c83a09a56bba1fe4eda932ce
a56b41a6023f828cccaaef470874571d169fdb8f683a75edd430fbd31a2c3f6e
d61af007f6c792b8fb6c677143b7d0e2533394e28c50737588e40da475c040ee
506f3b12853375a1fbbf85c82ddf13341cf941c5acd4a39a51d6addf145a7a51
c597c75c6b6b283e3b5c8caeee095d60902e7396536444b59513677a94667ff8
917e115cc403e29b4388e0d175cbfac3e7e40ca1742299fbdb353847db2de7c2
(以上は Trendmicro の情報: 引用元は https://www.trendmicro.com/content/dam/trendmicro/global/ja/research/22/h(aug)/lockbit-ransomware-group-augments-its-latest-variant--lockbit-3-/2022-08-15-IoC-LockBit-3.0.pdf)
Sha256 | 検出名(Trendmicro) |
---|---|
80e8defa5377018b093b5b90de0f2957f7062144c83a09a56bba1fe4eda932ce | Ransom.Win32.LOCKBIT.YXCGD |
a56b41a6023f828cccaaef470874571d169fdb8f683a75edd430fbd31a2c3f6e | Ransom.Win32.LOCKBIT.YXCGFT |
d61af007f6c792b8fb6c677143b7d0e2533394e28c50737588e40da475c040ee | Ransom.Win32.LOCKBIT.YXCGD |
506f3b12853375a1fbbf85c82ddf13341cf941c5acd4a39a51d6addf145a7a51 | Ransom.Win32.LOCKBIT.YXCGKT |
c597c75c6b6b283e3b5c8caeee095d60902e7396536444b59513677a94667ff8 | Ransom.PS1.LOCKBIT.YXCGTT |
917e115cc403e29b4388e0d175cbfac3e7e40ca1742299fbdb353847db2de7c2 | Ransom.Win32.LOCKBIT.YXCGT |
【VT検索】
https://www.virustotal.com/gui/file/80e8defa5377018b093b5b90de0f2957f7062144c83a09a56bba1fe4eda932ce
https://www.virustotal.com/gui/file/a56b41a6023f828cccaaef470874571d169fdb8f683a75edd430fbd31a2c3f6e
https://www.virustotal.com/gui/file/d61af007f6c792b8fb6c677143b7d0e2533394e28c50737588e40da475c040ee
https://www.virustotal.com/gui/file/506f3b12853375a1fbbf85c82ddf13341cf941c5acd4a39a51d6addf145a7a51
https://www.virustotal.com/gui/file/c597c75c6b6b283e3b5c8caeee095d60902e7396536444b59513677a94667ff8
https://www.virustotal.com/gui/file/917e115cc403e29b4388e0d175cbfac3e7e40ca1742299fbdb353847db2de7c2