Crypto24 Ransomware Group Blends Legitimate Tools with Custom Malware for Stealth Attacks ========================================================================================== SHA1 Detection name c4da41d0f40152c405ba399a9879d92b05ac1f61 Trojan.VBS.STARTER.THGOABE ba4685594714e3ffde4f52a82cc07c6f94324215 Trojan.BAT.CRYPTWOFOUR.THGOBBE a60c6a07d3ba6c2d9bf68def208566533398fe8f HackTool.Win64.RealBlindEDR.THGOBBE dd389b5f3bb7e946cc272bf01d412d661635f10b HackTool.Win64.RealBlindEDR.THGOEBE 9a9f52554c1a9938725b7dabd0f27002b0f8e874 Trojan.BAT.CRYPTWOFOUR. THGAOBE e573f4c395b55664e5e49f401ce0bbf49ea6a540 TrojanSpy.Win64.CRYPTWOFOUR.THGAOBE 71a528241603b93ad7165da3219e934b00043dd6 TrojanSpy.Win64.CRYPTWOFOUR.THGAHBE 74bc31f649a73821a98bef6e868533b6214f22a4 Ransom.Win64.CRYPTWOFOUR.THGOBBE b23d0939b17b654f2218268a896928e884a28e60 Ransom.Win64.CRYPTWOFOUR.THGOEBE 093902737a7850c6c715c153cd13e34c86d60992 HackTool.Win64.RemoteAdmin.THGOCBE 5d1f44a2b992b42253750ecaed908c61014b735a HackTool.PS1.TERMSRVPatcher.THGAOBE 8057d42ddb591dbc1a92e4dd23f931ab6892bcac Ransom.Win64.CRYPTWOFOUR.THFBCBE eeafb2d4f6ed93ab417f190abdd9d3480e1b7b21 Ransom.Win64.CRYPTWOFOUR.THFBCBE 3922461290fa663ee2853b2b5855afab0d39d799 Ransom.Win64.CRYPTWOFOUR.THFAHBE