mamona Unknown

First seen: -
0
Total Victims
0
Victims (30d)
Details

Mamona was a short-lived ransomware rebrand attempted by the operator behind BlackLock RaaS in March 2025 that failed before reverting; as a standalone strain it operates entirely offline with no C2 communication, uses custom encryption, and targets Windows systems.

Leak Site

Onion URL: http://bdhjur3agrogoxvwobbzpptkxhyewnjrhzqj4ug2dyfhf3dopyvvurid.onion

Metadata

Slug: mamona

Created: 14/01/2026 08:19

Updated: 28/06/2026 16:02