[ALL_FAMILIES]

BqtLock

ransomware1 mutex signatures

[BASIC_INFORMATION]

FAMILY_NAME:
BqtLock
CATEGORY:
RANSOMWARE
DESCRIPTION:
BqtLock (BaqiyatLock) is a ransomware family that encrypts files and demands payment for decryption. It uses specific mutexes to ensure only one instance runs on the system.
ALIASES:
BaqiyatLock
TAGS:
file_encryptionransom_demandwindows

[MUTEX_SIGNATURES](1)

[MUTEX_01]
Global\{00A0B0C0-D0E0-F000-1000-200030004000}
ANALYST: @adhikara13 DATE: 2024-12-19

[QUICK_ACTIONS]

[THREAT_INTELLIGENCE]

ATTRIBUTION:
Unknown
FIRST_OBSERVED:
2024

[SIGMA_RULE]

[STATISTICS]

MUTEX_COUNT:1
THREAT_ACTORS:1
ALIASES:1
TAGS:3
CATEGORY:RANSOMWARE
Malware profile loaded successfully

EvilMutex Project v1.0.0

Open Source Threat Intelligence Database