Rewterz
Rewterz Threat Alert – Bumblebee Malware Evolving Its TTPs – Active IOCs
October 5, 2022
Rewterz
Rewterz Threat Alert – Comm100 Chat Provider Hacked To Spread Malware In Supply Chain Attack – Active IOCs
October 5, 2022

Rewterz Threat Alert – WannaCry Ransomware – Active IOC

Severity

High

Analysis Summary

WannaCry is also called WCry or WanaCrptor ransomware malware, this ransomware can encrypt all your data files and demands a payment to restore the stolen information, usually in bitcoin with a ransom amount. WannaCry is one of the most dangerous malware ever used for cyberattacks. The attackers behind WannaCry ransomware uses a tool called Eternal Blue to exploit a vulnerability in the Windows Server Message Block, or SMB Protocol. WannaCry ransomware have caused serious disruptions in healthcare sector and financial sector and locked out users from their data.

Impact

  • File Encryption

Indicators of Compromise

MD5

  • dad0c7ec456353f6b91afe36a5102d73

SHA-256

  • b48f682b2eb280061211435817f9a0f74431eb6a3841bb506b0614be524e7fdb

SHA-1

  • 99d21baecafbc09f56ff3d9e6d201cdcaeec0190

Remediation

  • Block all threat indicators at your respective controls
  • Search for IOCs in your environment.