[ALL_FAMILIES]

Dharma

ransomware1 mutex signatures

[BASIC_INFORMATION]

FAMILY_NAME:
Dharma
CATEGORY:
RANSOMWARE
DESCRIPTION:
Dharma is a ransomware family that has been active since 2016. It operates as a Ransomware-as-a-Service (RaaS) and new variants are continuously released. This variant uses a mutex to ensure only one instance runs on the system.
ALIASES:
CrySiS
TAGS:
file_encryptionraaswindows

[MUTEX_SIGNATURES](1)

[QUICK_ACTIONS]

[THREAT_INTELLIGENCE]

ATTRIBUTION:
Unknown
FIRST_OBSERVED:
2016

[SIGMA_RULE]

[STATISTICS]

MUTEX_COUNT:1
THREAT_ACTORS:1
ALIASES:1
TAGS:3
CATEGORY:RANSOMWARE
Malware profile loaded successfully

EvilMutex Project v1.0.0

Open Source Threat Intelligence Database