Trusted Design

TeslaCrypt C2 Communication

概要

TeslaCrypt is a ransomware variant that operates over public web-to-Tor gateways for C2 communication. It uses AES to encrypt common file types and demands the victim pay a ransom for their recovery. This ransomware is usually distributed as an email attachment or through websites that redirect the victim to the Angler Exploit Kit. This ransomware, like many others, encrypts document files including text, pdf, etc. to force victims to pay a ransom to have their files restored. Targeting files that users value highly makes ransomware very effective at getting users to pay the ransom. TeslaCrypt is interesting because it also targets and encrypts computer games files, such as saved games and Steam activation keys. This means that TeslaCrypt is targeting many different types of users, including PC gamers. Just like irreplaceable photos, a game save, which is the product of countless hours of gaming, is extremely valuable and hard to replace.

Created: 2026-02-23

Indicators

Indicatorsは見つかっていない。

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Kimsuky

Score: 14.16
Matched TTPs:
  • T1036.007 - Double File Extension
  • T1560.003 - Archive via Custom Method
  • T1218.010 - Regsvr32
  • T1588.005 - Exploits
MITREへのリンク →

Mustang Panda

Score: 15.58
Matched TTPs:
  • T1036.007 - Double File Extension
  • T1560.003 - Archive via Custom Method
  • T1203 - Exploitation for Client Execution
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

FIN6

Score: 8.42
Matched TTPs:
  • T1560.003 - Archive via Custom Method
  • T1573.002 - Asymmetric Cryptography
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

CopyKittens

Score: 3.15
Matched TTPs:
  • T1560.003 - Archive via Custom Method
MITREへのリンク →

UNC3886

Score: 10.68
Matched TTPs:
  • T1560.003 - Archive via Custom Method
  • T1203 - Exploitation for Client Execution
  • T1008 - Fallback Channels
  • T1124 - System Time Discovery
MITREへのリンク →

Lotus Blossom

Score: 3.15
Matched TTPs:
  • T1560.003 - Archive via Custom Method
MITREへのリンク →

Lazarus Group

Score: 21.76
Matched TTPs:
  • T1560.003 - Archive via Custom Method
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
  • T1124 - System Time Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Mustard Tempest

Score: 6.30
Matched TTPs:
  • T1583.008 - Malvertising
  • T1189 - Drive-by Compromise
MITREへのリンク →

APT28

Score: 17.05
Matched TTPs:
  • T1048.002 - Exfiltration Over Asymmetric Encrypted Non-C2 Protocol
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1221 - Template Injection
  • T1564.001 - Hidden Files and Directories
  • T1550.001 - Application Access Token
MITREへのリンク →

CURIUM

Score: 10.73
Matched TTPs:
  • T1048.002 - Exfiltration Over Asymmetric Encrypted Non-C2 Protocol
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Storm-1811

Score: 8.71
Matched TTPs:
  • T1048.002 - Exfiltration Over Asymmetric Encrypted Non-C2 Protocol
  • T1486 - Data Encrypted for Impact
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Gamaredon Group

Score: 10.84
Matched TTPs:
  • T1001 - Data Obfuscation
  • T1221 - Template Injection
  • T1027.015 - Compression
MITREへのリンク →

APT38

Score: 4.11
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1189 - Drive-by Compromise
MITREへのリンク →

Magic Hound

Score: 6.63
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1189 - Drive-by Compromise
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Scattered Spider

Score: 5.63
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1490 - Inhibit System Recovery
MITREへのリンク →

FIN7

Score: 11.04
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
  • T1124 - System Time Discovery
MITREへのリンク →

Storm-0501

Score: 8.37
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1218.010 - Regsvr32
  • T1490 - Inhibit System Recovery
MITREへのリンク →

Medusa Group

Score: 12.91
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1573.002 - Asymmetric Cryptography
  • T1490 - Inhibit System Recovery
  • T1218.014 - MMC
MITREへのリンク →

Sandworm Team

Score: 7.12
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1203 - Exploitation for Client Execution
  • T1490 - Inhibit System Recovery
MITREへのリンク →

APT41

Score: 7.27
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1203 - Exploitation for Client Execution
  • T1008 - Fallback Channels
MITREへのリンク →

BlackByte

Score: 5.63
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1490 - Inhibit System Recovery
MITREへのリンク →

FIN8

Score: 5.09
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

Moonstone Sleet

Score: 4.86
Matched TTPs:
  • T1486 - Data Encrypted for Impact
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Cobalt Group

Score: 6.99
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

Leviathan

Score: 9.16
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1027.015 - Compression
MITREへのリンク →

Inception

Score: 7.39
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
  • T1221 - Template Injection
MITREへのリンク →

APT32

Score: 8.67
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

APT19

Score: 4.51
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1189 - Drive-by Compromise
MITREへのリンク →

Sidewinder

Score: 4.09
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
MITREへのリンク →

Threat Group-3390

Score: 6.41
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1027.015 - Compression
MITREへのリンク →

Dragonfly

Score: 6.41
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1221 - Template Injection
MITREへのリンク →

Andariel

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

The White Company

Score: 4.09
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
MITREへのリンク →

EXOTIC LILY

Score: 4.02
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT29

Score: 4.02
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Confucius

Score: 4.65
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1221 - Template Injection
MITREへのリンク →

Patchwork

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Axiom

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Higaisa

Score: 7.24
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1124 - System Time Discovery
  • T1027.015 - Compression
MITREへのリンク →

APT37

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

BRONZE BUTLER

Score: 5.85
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
MITREへのリンク →

Transparent Tribe

Score: 5.92
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Tropic Trooper

Score: 10.06
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
  • T1221 - Template Injection
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Ember Bear

Score: 5.63
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1588.005 - Exploits
MITREへのリンク →

Elderwood

Score: 3.26
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Darkhotel

Score: 5.85
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
MITREへのリンク →

OilRig

Score: 10.20
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
  • T1008 - Fallback Channels
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

TA2541

Score: 5.90
Matched TTPs:
  • T1573.002 - Asymmetric Cryptography
  • T1027.015 - Compression
MITREへのリンク →

RedCurl

Score: 5.41
Matched TTPs:
  • T1573.002 - Asymmetric Cryptography
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Windshift

Score: 4.29
Matched TTPs:
  • T1189 - Drive-by Compromise
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Dark Caracal

Score: 4.29
Matched TTPs:
  • T1189 - Drive-by Compromise
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Turla

Score: 4.36
Matched TTPs:
  • T1189 - Drive-by Compromise
  • T1124 - System Time Discovery
MITREへのリンク →

DarkHydrus

Score: 3.15
Matched TTPs:
  • T1221 - Template Injection
MITREへのリンク →

HAFNIUM

Score: 6.80
Matched TTPs:
  • T1564.001 - Hidden Files and Directories
  • T1550.001 - Application Access Token
MITREへのリンク →

Wizard Spider

Score: 3.29
Matched TTPs:
  • T1490 - Inhibit System Recovery
MITREへのリンク →

Molerats

Score: 3.15
Matched TTPs:
  • T1027.015 - Compression
MITREへのリンク →

Mofang

Score: 3.15
Matched TTPs:
  • T1027.015 - Compression
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Lazarus Group

Score: 0.79
Matched TTPs:
  • T1566.003 - Spearphishing via Service
  • T1564.001 - Hidden Files and Directories
  • T1027.007 - Dynamic API Resolution
  • T1203 - Exploitation for Client Execution
  • T1560.003 - Archive via Custom Method
  • T1124 - System Time Discovery
  • T1008 - Fallback Channels
  • T1189 - Drive-by Compromise
MITREへのリンク →

APT28

Score: 0.60
Matched TTPs:
  • T1221 - Template Injection
  • T1550.001 - Application Access Token
  • T1564.001 - Hidden Files and Directories
  • T1048.002 - Exfiltration Over Asymmetric Encrypted Non-C2 Protocol
  • T1203 - Exploitation for Client Execution
  • T1189 - Drive-by Compromise
MITREへのリンク →

Mustang Panda

Score: 0.56
Matched TTPs:
  • T1564.001 - Hidden Files and Directories
  • T1036.007 - Double File Extension
  • T1027.007 - Dynamic API Resolution
  • T1203 - Exploitation for Client Execution
  • T1560.003 - Archive via Custom Method
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る