Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Ransom Note: !!!README!!!DO_NOT_DELETE.txt

Group: Aurora

We have downloaded confidential information files. Your files are encrypted. Contact us via tor browser at http://ijexszhscln27nl263lmcd7tx3jttkhm4wjhd4e3y6r4csdbfyeprvid.onion
Your access key: [snip]

Indicators of Compromise
Type IOC
onion url http://ijexszhscln27nl263lmcd7tx3jttkhm4wjhd4e3y6r4csdbfyeprvid.onion