"value":"Today MalwareHunterTeam discovered a new variant of the Cryptomix Ransomware that appends the .BACKUP extension to encrypted files, changes the contact email, and slightly changes the ransom note's name.\r\n\r\nIn this article I will provide a brief summary of any changes that have occurred in this new variant. As we are always looking for weaknesses, if you are a victim of this variant and decide to pay the ransom, please send us the decryptor so we can take a look at it. You can also discuss or receive support for Cryptomix ransomware infections in our dedicated Cryptomix Help & Support Topic.",
"Tag":[
{
"colour":"#00223b",
"local":"0",
"name":"osint:source-type=\"blog-post\"",
"relationship_type":""
}
]
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292368",
"to_ids":true,
"type":"filename",
"uuid":"5b17e410-2d8c-47d1-be8d-4885950d210f",
"value":"HELP_INSTRUCTION.TXT"
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292368",
"to_ids":true,
"type":"filename",
"uuid":"5b17e410-7af0-4622-ba57-4635950d210f",
"value":"%ALLUSERSPROFILE%\\[random].exe"
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292459",
"to_ids":true,
"type":"email-src",
"uuid":"5b17e46b-082c-45e1-bddc-42da950d210f",
"value":"backuppc@tuta.io"
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292460",
"to_ids":true,
"type":"email-src",
"uuid":"5b17e46c-434c-4200-a688-45db950d210f",
"value":"backuppc@protonmail.com"
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292461",
"to_ids":true,
"type":"email-src",
"uuid":"5b17e46d-dc9c-4316-9673-4556950d210f",
"value":"backuppc1@protonmail.com"
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292461",
"to_ids":true,
"type":"email-src",
"uuid":"5b17e46d-853c-4181-8b8c-496e950d210f",
"value":"b4ckuppc1@yandex.com"
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292461",
"to_ids":true,
"type":"email-src",
"uuid":"5b17e46d-8d20-471f-924e-417f950d210f",
"value":"b4ckuppc2@yandex.com"
},
{
"category":"Payload delivery",
"comment":"",
"deleted":false,
"disable_correlation":false,
"timestamp":"1528292462",
"to_ids":true,
"type":"email-src",
"uuid":"5b17e46e-9ca8-4358-8c42-4b78950d210f",
"value":"backuppc1@dr.com"
}
],
"Object":[
{
"comment":"",
"deleted":false,
"description":"File object describing a file with meta-information",