TF-MAL-elf.erebus
📛 Threat Title
Malware family: Erebus
Description
ThreatFox malware family `elf.erebus`. Printable name: Erebus.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
elf.erebus
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/elf.erebus
IOC database
- Type
- domain
- Value
elf.erebus- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat TF-MAL-elf.erebus
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/elf.erebus
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (9)
-
web:access.redhat.com
Erebus malware is a Linux-based ransomware that can attack systems and encrypt files holding them for ransom. Users are then told to make Bitcoin payments in exchange for decryption keys to regain access to their data. Additional information on this malware can be found at Trend Micro: Erebus Linux Ransomware: Impact to Servers and Countermeasures, and Erebus Resurfaces as Linux Ransomware
-
web:learn.microsoft.com
Remediate security weaknesses discovered through security recommendations, and create exceptions if needed, in Defender Vulnerability Management.
-
web:ransomware.fandom.com
Erebus Ransomware Overview The Erebus ransomware is a new malware of unknown origin. At the moment the security experts cannot conclude if this is a new virus or is an offspring from a previously known malware family .
-
web:support.alertlogic.com
The Network-Based Intrusion Detection System (IDS) has been updated with the new signatures for this exploit when detected via Alert Logic Threat Manager™. If this signature is detected, an incident is generated in the Alert Logic console. Recommendations for Mitigation Follow internal malware remediation processes.
-
web:www.breachsense.com
Complete malware remediation now requires addressing both the infected endpoint and the stolen authentication data. Your malware incident response playbook must account for both.
-
web:www.cisa.gov
It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.
-
web:www.fbi.gov
Threat actors exploit physical and software vulnerabilities in ATMs and deploy malware to dispense cash without a legitimate transaction. The FBI has observed an increase in ATM jackpotting ...
-
web:www.ncsc.gov.uk
How to defend organisations against malware or ransomware attacks.
-
web:www.pcrisk.com
Erebus is a ransomware-type virus distributed via malicious online advertisements. These ads redirect users to a Rig exploit kit server, which infects the computer system.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.