Details

_id 5e7d344b11acca7063dbbe2a
reference ['https://www.virustotal.com/gui/file/fba31181ed1957e81c452fa1e860414d3a2bd2da470074a32f196f873a37d9ad/detection']
md5 ['296e55388cb802fbe261f9cd00668ed7']
sha1 ['78832090f1e856065de6bf1fd3c1a4884fad491a']
sha256 ['fba31181ed1957e81c452fa1e860414d3a2bd2da470074a32f196f873a37d9ad']
mail []
ip []
domain []
url []
user struppigel
tweet At first this seems like a simple screenlocker. but it infects the MBR as well. Same MBR as the Coronavirus ransomware found by @malwrhunterteam The MBR is from a builder by someone called #WobbyChip. https://www.virustotal.com/gui/file/fba31181ed1957e81c452fa1e860414d3a2bd2da470074a32f196f873a37d9ad/detection … pic.twitter.com/MAAItcaGgI
id 1243190994645983232
retweets 15
favorites 25
link https://twitter.com/struppigel/status/1243190994645983232
mentions ['@malwrhunterteam']
hashtags ['#WobbyChip']
timestamp 1585234805
date 2020-03-26 16:00:05

Tweet