Sınıf: Trojan-Ransom
Bu tür bir Trojan, kurbanın bilgisayarındaki verileri değiştirir, böylece kurban artık verileri kullanamaz veya bilgisayarın düzgün çalışmasını engeller. Veriler “rehin alındığında” (bloke veya şifreli) olduğunda, kullanıcı fidye talebinde bulunacaktır. Fidye talebi, kurbanın kötü niyetli kullanıcı parasını göndermesini söyler; Bunu aldıktan sonra, siber suçlu, verileri geri yüklemek veya bilgisayarın performansını geri yüklemek için kurbanı bir program gönderecektir.Platform: Win32
Win32, 32-bit uygulamaların yürütülmesini destekleyen Windows NT tabanlı işletim sistemlerinde (Windows XP, Windows 7, vb.) Bir API'dir. Dünyanın en yaygın programlama platformlarından biri.Aile: Trojan-Ransom.Win32.Cryptodef
No family descriptionExamples
C2DA96DDAE8180BFA4F76049CCCBCF34Tactics and Techniques: Mitre*
TA0005
Defense Evasion
The adversary is trying to avoid being detected. Defense Evasion consists of techniques that adversaries use to avoid detection throughout their compromise. Techniques used for defense evasion include uninstalling/disabling security software or obfuscating/encrypting data and scripts. Adversaries also leverage and abuse trusted processes to hide and masquerade their malware. Other tactics' techniques are cross-listed here when those techniques include the added benefit of subverting defenses.
T1070.004
File Deletion
Adversaries may delete files left behind by the actions of their intrusion activity. Malware, tools, or other non-native files dropped or created on a system by an adversary (ex: Ingress Tool Transfer) may leave traces to indicate to what was done within a network and how. Removal of these files can occur during an intrusion, or as part of a post-intrusion process to minimize the adversary's footprint.
* © 2026 The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.