SYMBOLCOMMON_NAMEaka. SYNONYMS
win.ruransom (Back to overview)

RURansom


RURansom shows characteristics of typical ransomware, but despite its name, TrendMicro's assumptions after analysis showed that this malware is more a wiper than ransomware, because the irreversible destruction of encrypted files.

References
2022-04-12vmwareSudhir Devkar
@online{devkar:20220412:ruransom:c9abdbd, author = {Sudhir Devkar}, title = {{RuRansom – A Retaliatory Wiper}}, date = {2022-04-12}, organization = {vmware}, url = {https://blogs.vmware.com/security/2022/04/ruransom-a-retaliatory-wiper.html}, language = {English}, urldate = {2022-05-04} } RuRansom – A Retaliatory Wiper
RURansom
2022-03-11Cyble
@online{cyble:20220311:new:dfa8c06, author = {Cyble}, title = {{New Wiper Malware Attacking Russia: Deep-Dive Into RURansom Malware}}, date = {2022-03-11}, url = {https://blog.cyble.com/2022/03/11/new-wiper-malware-attacking-russia-deep-dive-into-ruransom-malware/}, language = {English}, urldate = {2022-03-17} } New Wiper Malware Attacking Russia: Deep-Dive Into RURansom Malware
RURansom
2022-03-08Trend MicroJaromír Hořejší, Cedric Pernet
@online{hoej:20220308:new:7d4d70f, author = {Jaromír Hořejší and Cedric Pernet}, title = {{New RURansom Wiper Targets Russia}}, date = {2022-03-08}, organization = {Trend Micro}, url = {https://www.trendmicro.com/en_us/research/22/c/new-ruransom-wiper-targets-russia.html}, language = {English}, urldate = {2022-03-10} } New RURansom Wiper Targets Russia
RURansom

There is no Yara-Signature yet.