clop Unknown

Prima attivita: 25/01/2026 14:50 Ultimo Attacco: 14/02/2026
122
Vittime Totali
79
Vittime (30gg)
Dettagli

The ransomware group known as Cl0p is a variant of a previously known strain dubbed CryptoMix. It is worth noting that this variant was delivered as the final payload in a phishing campaign in 2019 and was exclusively financially motivated, with attacks carried out by the threat actors TA505.<br> <br> At that time, malicious actors sent phishing emails that led to a macro-enabled document that would drop a loader called 'Get2.' After gaining an initial foothold in the system or infrastructure, the actors began using reconnaissance, lateral movement, and exfiltration techniques to prepare for the deployment of the ransomware.<br> <br> After the execution of the ransomware, Cl0p appends the extension '.clop' to the end of files, or other types of extensions such as '.CIIp, .Cllp, and .C_L_O_P,' as well as different versions of the ransom note that were also observed after encryption. Depending on the variant, any of the ransom text files were created with names like 'ClopReadMe.txt, README_README.txt, Cl0pReadMe.txt, and READ_ME_!!!.TXT.'<br> <br> The Clop operation has shifted from delivering its final payload via phishing and has begun initiating attacks using vulnerabilities that resulted in the exploitation and infection of victims' infrastructures.<BR>Source: https://github.com/crocodyli/ThreatActors-TTPs

Leak Site

Onion URL: http://ekbgzchl6x2ias37.onion

Vittime per Paese
🇺🇸 United States 43
23
🇨🇦 Canada 14
🇦🇺 Australia 10
🇬🇧 United Kingdom 5
🇺🇰 UK 4
🇮🇹 Italy 3
🇫🇷 France 3
Vittime Ransomware 10
Vittima Paese Settore Data Scoperta
DAD.CO.TH 🇹🇭 TH Not Found 14/02/2026 10:55
14/02/2026
THEMORTGAGEFIRM.COM 🇺🇸 US Financial Services 14/02/2026 10:55
14/02/2026
FISHWINDOWCLEANING.COM 🇺🇸 US Business Services 14/02/2026 10:54
14/02/2026
SOLUTIONSINSAFETY.COM - Business Services 14/02/2026 10:54
14/02/2026
BOYDEN.COM 🇺🇸 US Not Found 14/02/2026 10:53
14/02/2026
CFDT.FR 🇫🇷 FR Not Found 14/02/2026 10:52
14/02/2026
SPOHNASSOCIATES.COM 🇺🇸 US Technology 14/02/2026 10:52
14/02/2026
GARNERGROUP.NET - Not Found 14/02/2026 10:51
14/02/2026
THEPERPETUAL.COM 🇺🇸 US Technology 14/02/2026 10:51
14/02/2026
AIGBUSINESS.COM - Financial Services 14/02/2026 10:50
14/02/2026
Metadata

Slug: clop

Created: 14/01/2026 08:19

Updated: 07/03/2026 04:00