Koler Android Ransomware Targets the US with Fake Apps
概要
During the past week, US users visiting adult-themed sites were targeted by ads for a fake PornHub app that contained a version of the Koler ransomware.
This particular ransomware appeared in 2014 when the operators of the Reveton Windows screen-locking ransomware decided to branch out and create an Android counterpart, which they began advertising on Russian-speaking hacking forums.
The Android version was a hit from the get-go, and it was one of 2014's most active Android threats, being detected in multiple campaigns during that year [1, 2, 3], including one that leveraged an SMS worm to automate and boost its infection process.
Created: 2026-02-23
Indicators
類似Pulses
このPulseに関連する脅威アクター (事実ベース)
Score: 4.63
Matched TTPs:
- T1113 - Screen Capture
- T1003.003 - NTDS
MITREへのリンク →
Score: 7.33
Matched TTPs:
- T1113 - Screen Capture
- T1091 - Replication Through Removable Media
- T1583.006 - Web Services
MITREへのリンク →
Score: 7.96
Matched TTPs:
- T1113 - Screen Capture
- T1027.005 - Indicator Removal from Tools
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 16.47
Matched TTPs:
- T1113 - Screen Capture
- T1091 - Replication Through Removable Media
- T1583.006 - Web Services
- T1564.001 - Hidden Files and Directories
- T1003.003 - NTDS
- T1550.001 - Application Access Token
MITREへのリンク →
Score: 6.82
Matched TTPs:
- T1113 - Screen Capture
- T1583.006 - Web Services
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 4.30
Matched TTPs:
- T1113 - Screen Capture
- T1583.006 - Web Services
MITREへのリンク →
Score: 4.63
Matched TTPs:
- T1113 - Screen Capture
- T1003.003 - NTDS
MITREへのリンク →
Score: 4.30
Matched TTPs:
- T1113 - Screen Capture
- T1583.006 - Web Services
MITREへのリンク →
Score: 4.81
Matched TTPs:
- T1113 - Screen Capture
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 10.00
Matched TTPs:
- T1113 - Screen Capture
- T1091 - Replication Through Removable Media
- T1583.006 - Web Services
- T1564.001 - Hidden Files and Directories
MITREへのリンク →
Score: 5.70
Matched TTPs:
- T1091 - Replication Through Removable Media
- T1564.001 - Hidden Files and Directories
MITREへのリンク →
Score: 3.03
Matched TTPs:
- T1091 - Replication Through Removable Media
MITREへのリンク →
Score: 3.03
Matched TTPs:
- T1091 - Replication Through Removable Media
MITREへのリンク →
Score: 10.05
Matched TTPs:
- T1091 - Replication Through Removable Media
- T1583.006 - Web Services
- T1564.001 - Hidden Files and Directories
- T1003.003 - NTDS
MITREへのリンク →
Score: 5.70
Matched TTPs:
- T1091 - Replication Through Removable Media
- T1564.001 - Hidden Files and Directories
MITREへのリンク →
Score: 11.15
Matched TTPs:
- T1583.006 - Web Services
- T1564.001 - Hidden Files and Directories
- T1003.003 - NTDS
- T1550.001 - Application Access Token
MITREへのリンク →
Score: 4.54
Matched TTPs:
- T1583.006 - Web Services
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 4.35
Matched TTPs:
- T1583.006 - Web Services
- T1003.003 - NTDS
MITREへのリンク →
Score: 5.16
Matched TTPs:
- T1583.006 - Web Services
- T1027.005 - Indicator Removal from Tools
MITREへのリンク →
Score: 4.54
Matched TTPs:
- T1583.006 - Web Services
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 7.20
Matched TTPs:
- T1583.006 - Web Services
- T1564.001 - Hidden Files and Directories
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 4.68
Matched TTPs:
- T1583.006 - Web Services
- T1564.001 - Hidden Files and Directories
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1027.005 - Indicator Removal from Tools
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1027.005 - Indicator Removal from Tools
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1027.005 - Indicator Removal from Tools
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1027.005 - Indicator Removal from Tools
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1027.005 - Indicator Removal from Tools
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1564.005 - Hidden File System
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1564.005 - Hidden File System
MITREへのリンク →
Score: 6.19
Matched TTPs:
- T1136 - Create Account
- T1003.003 - NTDS
MITREへのリンク →
Score: 5.01
Matched TTPs:
- T1564.001 - Hidden Files and Directories
- T1003.003 - NTDS
MITREへのリンク →
Score: 4.86
Matched TTPs:
- T1003.003 - NTDS
- T1566.003 - Spearphishing via Service
MITREへのリンク →
このPulseに関連する脅威アクター (推論ベース)
Score: 0.82
Matched TTPs:
- T1583.006 - Web Services
- T1091 - Replication Through Removable Media
- T1564.001 - Hidden Files and Directories
- T1003.003 - NTDS
- T1113 - Screen Capture
- T1550.001 - Application Access Token
MITREへのリンク →
Score: 0.58
Matched TTPs:
- T1564.001 - Hidden Files and Directories
- T1583.006 - Web Services
- T1003.003 - NTDS
- T1550.001 - Application Access Token
MITREへのリンク →
Score: 0.57
Matched TTPs:
- T1564.001 - Hidden Files and Directories
- T1583.006 - Web Services
- T1113 - Screen Capture
- T1091 - Replication Through Removable Media
MITREへのリンク →
Related CVEs
このPulseに見つかったCVEはありません。
Pulse – 脅威アクター グラフ
← Pulse一覧に戻る