Australia

nefilim

According to Vitali Kremez and Michael Gillespie, this ransomware shares much code with Nemty 2.5. A difference is removal of the RaaS component, which was switched to email communications for payments. Uses AES-128, which is then protected RSA2048.

First seen 2020-05-05 · Last seen 2021-09-10 · 1 Australia claims

Cached from ransomware.live. 2026-09-19 PT. Leak sites are not linked.

Toll Group

AU

Discovered: 2020-05-05 <span class="ransom-ago">(77mo ago)</span>