Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Ransom Note: readme_locker.txt

Group: Payoutsking

The files on the company's network have been encrypted, and significant amount of confidential data has been downloaded from it.
To recover your files to the initial state and prevent disclosure of your sensitive information contact us as soon as possible via the TOX chat platform.
- Download a TOX messaging client(https://tox.chat);
- Create an account;
- Add the following contact ID for futher negotiations: 
74FB30F3FCC73D6B1BCE403238D082426F43D95F42CA25DF20CB278D91E8754B151651ED12DD

In case you don't get in touch within 7 days, the exfiltrated data will be disclosed on our website: https://payoutsgn7cy6uliwevdqspncjpfxpmzgirwl2au65la7rfs5x3qnbqd.onion

Indicators of Compromise
Type IOC
onion url https://payoutsgn7cy6uliwevdqspncjpfxpmzgirwl2au65la7rfs5x3qnbqd.onion
tox id 74FB30F3FCC73D6B1BCE403238D082426F43D95F42CA25DF20CB278D91E8754B151651ED12DD