s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-elf.dark_radiation

📛 Threat Title

Malware family: DarkRadiation

Category: DarkRadiation First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `elf.dark_radiation`. Printable name: DarkRadiation.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (10)

  • web:github.com

    A collection of beautified and commented samples of malware implemented in Bash - 0xjet/bash- malware

  • web:imtr.net

    On 2022-06-21, a campaign was reported, involving DarkRadiation operator, gaining initial access via Unknown, while using Database ransomware, Disk Wipe, Remotely execute commands or scripts on a V...

  • web:malpedia.caad.fkie.fraunhofer.de

    Details for the DarkRadiation malware family including references, samples and yara signatures.

  • web:shadowknightsecurity.com

    Analysis Goals: Working in a SOC it's important to be able to perform quick triage of malware samples and provide other teams with actionable intelligence. The sample below that we will be analyzing is a piece of malware called Dark Radiation Ransomware that targets Red Hat and Debian based Linux distributions.

  • web:www.breachsense.com

    Malware incident response is the coordinated process of identifying, containing, eradicating, and recovering from malware infections. It includes isolating infected systems, analyzing the malware's behavior, remediating affected accounts, and implementing controls to prevent reinfection.

  • web:www.cisa.gov

    It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.

  • web:www.guidepointsecurity.com

    A new ransomware strain dubbed DarkRadiation is causing concern for security professionals. The code is written in the Bash command and control language and targets Linux and Docker cloud containers. According to researchers, the ransomware uses Open SSL's AES algorithm with CBC mode to encrypt files. The ransomware also adds the symbol for radioactivity to encrypted file names. When ...

  • web:www.microsoft.com

    Understand how this virus or malware spreads and how its payloads affects your computer. Protect against this threat, identify symptoms, and clean up or remove infections.

  • web:www.ncsc.gov.uk

    How to defend organisations against malware or ransomware attacks.

  • web:www.sentinelone.com

    While new ransomware families are a common occurrence these days, a recently discovered ransomware dubbed 'DarkRadiation' is especially noteworthy for defenders. First, it targets Linux and Docker cloud containers, making it of particular concern to enterprises. Secondly, DarkRadiation is written entirely in Bash, a feature that can make it difficult for some security solutions to identify ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.