TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 に関する「個人」の調査・研究・参照ログ

Dharma (まとめ)

【概要】

追加される拡張子 [メールアドレス].dharma


【辞書】

◆Dharma (Malpedia)
https://malpedia.caad.fkie.fraunhofer.de/details/win.dharma


【ニュース】

◆Free decryption tools now available for Dharma ransomware (ITWorld, 2017/03/02)

Someone leaked the decryption keys for the program online

http://www.itworld.com/article/3176591/security/free-decryption-tools-now-available-for-dharma-ransomware.html
http://malware-log.hatenablog.com/entry/2017/03/02/000000_1

◆KEYS FOR DHARMA RANSOMWARE RELEASED (threatpost, 2017/03/02 11:34)
https://threatpost.com/keys-for-dharma-ransomware-released/124024/
http://malware-log.hatenablog.com/entry/2017/03/02/000000_1

◆Kaspersky Releases Decryptor for the Dharma Ransomware (BleepingComputer, 2017/03/02)
https://www.bleepingcomputer.com/news/security/kaspersky-releases-decryptor-for-the-dharma-ransomware/
http://malware-log.hatenablog.com/entry/2017/03/02/000000_1

◆Kaspersky, ESET, Avast release Dharma ransomware decryptors (Healthcare IT News, 2017/03/03 13:27)
http://www.healthcareitnews.com/news/kaspersky-eset-avast-release-dharma-ransomware-decryptors
http://malware-log.hatenablog.com/entry/2017/03/03/000000_1

◆ランサムウェア「クライシス」の正体の解明と暗号化解除ツール (キヤノンITソリューションズ, 2017/03/23)
https://eset-info.canon-its.jp/malware_info/trend/detail/170323.html
http://malware-log.hatenablog.com/entry/2017/03/23/000000_9

◆New Arena Crysis Ransomware Variant Released (BleepingComputer, 2017/08/25)
https://www.bleepingcomputer.com/news/security/new-arena-crysis-ransomware-variant-released/
http://malware-log.hatenablog.com/entry/2017/08/25/000000_4

◆New Brrr Dharma Ransomware Variant Released (BleepingComputer, 2018/09/15)
https://www.bleepingcomputer.com/news/security/new-brrr-dharma-ransomware-variant-released/
http://malware-log.hatenablog.com/entry/2018/09/15/000000_1

◆Security Alert: New Dharma Ransomware Strains Alarmingly Go Undetected By Antivirus Engines (Heimdal, 2018/11/07)

At least four new strains appeared recently . We even discovered one that goes undetected by almost all the antivirus engines on the market.

https://heimdalsecurity.com/blog/security-alert-dharma-ransomware-undetected-antivirus-engines/
http://malware-log.hatenablog.com/entry/2018/11/07/000000_5

◆Texas hospital becomes victim of Dharma ransomware (ZDNet, 2018/11/19 12:12)
https://www.zdnet.com/article/texas-hospital-becomes-victim-of-ransomware-patient-data-potentially-leaked/
http://malware-log.hatenablog.com/entry/2018/11/19/000000_6

◆自動化から手作業に回帰?ターゲットを極めて絞ったランサムウェアがトレンド - SophosLab 2019 Threat Report (マイナビニュース, 2018/11/25 14:44)
https://news.mynavi.jp/article/20181125-sophos2019samsam/
http://malware-log.hatenablog.com/entry/2018/11/25/000000_1

◆特定ユーザーを狙った標的型攻撃が登場、Sophosの2019年版脅威レポート (@IT, 2018/12/26 18:30)
http://www.atmarkit.co.jp/ait/articles/1812/26/news107.html
http://malware-log.hatenablog.com/entry/2018/12/26/000000

◆「Dharmaのコードを大体カット&ペースト」したPhobosランサムウェア--被害を拡大 (ZDNet, 2019/01/22 10:28)
https://japan.zdnet.com/article/35131580/
http://malware-log.hatenablog.com/entry/2019/01/22/000000

◆PHOBOS, THE NEW RANSOMWARE OF DHARMA GROUP, INFECTS HUNDREDS OF ORGANIZATIONS (SecurityNewspaper, 2019/01/22)
https://www.securitynewspaper.com/2019/01/22/phobos-the-new-ransomware-of-dharma-group-infects-hundreds-of-organizations/
http://malware-log.hatenablog.com/entry/2019/01/22/000000

◆高額の身代金要求するランサムウェア。支払われた仮想通貨9割増:2019年Q1 (Coindesk, 2019/04/22 09:00)
https://www.coindeskjapan.com/8723/
https://malware-log.hatenablog.com/entry/2019/04/22/000000_12

◆Dharma Ransomware Uses AV Tool to Distract from Malicious Activities (Trendmicro, 2019/05/08 04:50)
https://blog.trendmicro.com/trendlabs-security-intelligence/dharma-ransomware-uses-av-tool-to-distract-from-malicious-activities/
https://malware-log.hatenablog.com/entry/2019/05/08/000000_6


【ブログ】

◆New Variant of Dharma Ransomware Discovered (Latest Hacknig News, 2018/08/13)
https://latesthackingnews.com/2018/08/13/new-variant-of-dharma-ransomware-discovered/
https://malware-log.hatenablog.com/entry/2018/08/13/000000_7

◆Dharma Ransomware: What It’s Teaching Us (Fortinat, 2018/11/12)
https://www.fortinet.com/blog/threat-research/dharma-ransomware--what-it-s-teaching-us.html
http://malware-log.hatenablog.com/entry/2018/11/12/000000_8

◆New Dharma Ransomware Variant Detected (SpamTitan, 2018/11/13)
https://www.spamtitan.com/blog/new-dharma-ransomware-variant-detected/
http://malware-log.hatenablog.com/entry/2018/11/13/000000_10

◆Carbon Black TAU Threat Analysis: Recent Dharma Ransomware Highlights Attackers’ Continued Use of Open-Source Tools (Carbon Black, 2018/07/10)
https://www.carbonblack.com/2018/07/10/carbon-black-tau-threat-analysis-recent-dharma-ransomware-highlights-attackers-continued-use-open-source-tools/
http://malware-log.hatenablog.com/entry/2018/07/10/000000_7


【公開情報】

◆Dharma Ransomware を削除する方法 (Cyber Security Experts, 2016/11/18)
http://www.4-cybersecurity.com/jp/delete-dharma-ransomware/
http://malware-log.hatenablog.com/entry/2016/11/18/000000

◆Dharma ランサムウェア・ウィルス. 除去するには? (アンインストール・ガイド) (uirusu.jp, 2017/01/26)
http://uirusu.jp/dharma-%E3%83%A9%E3%83%B3%E3%82%B5%E3%83%A0%E3%82%A6%E3%82%A7%E3%82%A2%E3%83%BB%E3%82%A6%E3%82%A3%E3%83%AB%E3%82%B9/
http://malware-log.hatenablog.com/entry/2017/01/26/000000_4

◆Threat Landscape Dashboard Dharma - Ransomware (McAfee, 2018/07/25)
https://www.mcafee.com/enterprise/en-us/threat-center/threat-landscape-dashboard/ransomware-details.dharma-ransomware.html
http://malware-log.hatenablog.com/entry/2018/07/25/000000_14


【資料】

◆Ransomware from the Crysis/Dharma family Report (Panda, 2017/11)
https://www.pandasecurity.com/mediacenter/src/uploads/2017/11/Ransomware_Crysis-Dharma-en.pdf
http://malware-log.hatenablog.com/entry/2017/11/30/000000_6

◆SophosLabs 2019 Threat Report (sophos, 2018/11/25)
https://www.sophos.com/en-us/medialibrary/pdfs/technical-papers/sophoslabs-2019-threat-report.pdf
http://malware-log.hatenablog.com/entry/2018/11/25/000000_2


【関連情報】

f:id:tanigawa:20170321223659j:plain
Dharma Encrypted Files
出典: https://www.bleepingcomputer.com/news/security/kaspersky-releases-decryptor-for-the-dharma-ransomware/

f:id:tanigawa:20181125142742j:plain
SophosLabs 2019 Threat Report内のSamSamによる報酬額推移
出典: https://news.mynavi.jp/article/20181125-sophos2019samsam/

f:id:tanigawa:20181229055741p:plain
f:id:tanigawa:20181229060003p:plain
出典: http://www.atmarkit.co.jp/ait/articles/1812/26/news107.html

f:id:tanigawa:20190123061417p:plain
出典: https://japan.zdnet.com/article/35131580/


【関連まとめ記事】

全体まとめ
 ◆マルウェア / Malware (まとめ)

◆ランサムウェア (まとめ)
https://malware-log.hatenablog.com/entry/Ransomware


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2019