add synonym - step 1

pull/53/head
Deborah Servili 2017-05-17 12:14:10 +02:00
parent c501517e9a
commit 6859b2fb4e
1 changed files with 57 additions and 14 deletions

View File

@ -88,6 +88,9 @@
},
{
"meta": {
"synonyms": [
"Ŧl๏tєгค гคภร๏๓ฬคгє"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/03/vortex-ransomware.html",
"https://twitter.com/struppigel/status/839778905091424260"
@ -101,7 +104,7 @@
"date": "March 2017"
},
"description": "This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hacker spread the virus using email spam, fake updates, and harmful attachments. All your files are compromised including music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "Vortex Ransomware or Ŧl๏tєгค гคภร๏๓ฬคгє"
"value": "Vortex Ransomware"
},
{
"meta": {
@ -246,6 +249,9 @@
},
{
"meta": {
"synonyms": [
"Fake CTB-Locker"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/03/turkish-fileencryptor.html",
"https://twitter.com/JakubKroustek/status/842034887397908480"
@ -262,7 +268,7 @@
"date": "March 2017"
},
"description": "his is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hacker spread the virus using email spam, fake updates, and harmful attachments. All your files are compromised including music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "Turkish FileEncryptor Ransomware or Fake CTB-Locker"
"value": "Turkish FileEncryptor Ransomware"
},
{
"meta": {
@ -640,6 +646,9 @@
},
{
"meta": {
"synonyms": [
"BarRaxCrypt  Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/02/barraxcrypt-ransomware.html",
"https://twitter.com/demonslay335/status/835668540367777792"
@ -652,7 +661,7 @@
"date": "February 2017"
},
"description": "This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hacker spread the virus using email spam, fake updates, and harmful attachments. All your files are compromised including music, MS Office, Open Office, pictures, videos, shared online files etc.. Based on HiddenTear",
"value": "BarRax  Ransomware or BarRaxCrypt  Ransomware"
"value": "BarRax  Ransomware"
},
{
"meta": {
@ -670,6 +679,9 @@
},
{
"meta": {
"synonyms": [
"CzechoSlovak Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/02/userfileslocker-ransomware.html"
],
@ -684,7 +696,7 @@
"date": "February 2017"
},
"description": "This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hacker spread the virus using email spam, fake updates, and harmful attachments. All your files are compromised including music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "UserFilesLocker Ransomware or CzechoSlovak Ransomware"
"value": "UserFilesLocker Ransomware"
},
{
"meta": {
@ -731,6 +743,9 @@
},
{
"meta": {
"synonyms": [
"VHDLocker Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/02/vhd-ransomware.html"
],
@ -741,7 +756,7 @@
"date": "February 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "PleaseRead Ransomware or VHDLocker Ransomware"
"value": "PleaseRead Ransomware"
},
{
"meta": {
@ -764,6 +779,9 @@
},
{
"meta": {
"synonyms": [
"Locky Impersonator Ransomware"
],
"refs": [
"https://www.bleepingcomputer.com/news/security/the-locky-ransomware-encrypts-local-files-and-unmapped-network-shares/",
"https://id-ransomware.blogspot.co.il/2017/02/locky-impersonator.html",
@ -779,7 +797,7 @@
"date": "February 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "Fake Locky Ransomware or Locky Impersonator Ransomware"
"value": "Fake Locky Ransomware"
},
{
"meta": {
@ -1132,6 +1150,9 @@
},
{
"meta": {
"synonyms": [
"Fake"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/01/dn-donotopen.html"
],
@ -1146,7 +1167,7 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. Uses the name “Chrome Update” to confuse its victims. Then imitates the chrome update process ,while encrypting the files. DO NOT pay the ransom, since YOUR COMPUTER WILL NOT BE RESTORED FROM THIS MALWARE!!!!",
"value": "DN or DoNotOpen Ransomware"
"value": "DN"
},
{
"meta": {
@ -1191,6 +1212,9 @@
},
{
"meta": {
"synonyms": [
"HavocCrypt Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/01/havoc-ransomware.html"
],
@ -1204,7 +1228,7 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, infected attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures , videos, shared online files etc..",
"value": "Havoc or HavocCrypt Ransomware"
"value": "Havoc"
},
{
"meta": {
@ -1228,6 +1252,10 @@
},
{
"meta": {
"synonyms": [
"RansomTroll Ransomware",
"Käändsõna Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/01/kaandsona-ransomtroll.html",
"https://twitter.com/BleepinComputer/status/819927858437099520"
@ -1243,7 +1271,7 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc.. The word Kaandsona is Estonian, therefore the creator is probably from Estonia. Crashes before it encrypts",
"value": "Kaandsona Ransomware or RansomTroll Ransomware or Käändsõna Ransomware"
"value": "Kaandsona Ransomware"
},
{
"meta": {
@ -1266,6 +1294,9 @@
},
{
"meta": {
"synonyms": [
"HakunaMatataRansomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/01/hakunamatata.html",
"https://id-ransomware.blogspot.co.il/2016_03_01_archive.html"
@ -1281,7 +1312,7 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "NMoreia 2.0 Ransomware or HakunaMatataRansomware"
"value": "NMoreia 2.0 Ransomware"
},
{
"meta": {
@ -1410,6 +1441,9 @@
},
{
"meta": {
"synonyms": [
"DynA CryptoLocker Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/02/dyna-crypt-ransomware.html",
"https://www.bleepingcomputer.com/news/security/dyna-crypt-not-only-encrypts-your-files-but-also-steals-your-info/"
@ -1424,10 +1458,13 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "DynA-Crypt Ransomware or DynA CryptoLocker Ransomware"
"value": "DynA-Crypt Ransomware"
},
{
"meta": {
"synonyms": [
"Serpent Danish Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/02/serpent-danish-ransomware.html"
],
@ -1441,7 +1478,7 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "Serpent 2017 Ransomware or Serpent Danish Ransomware"
"value": "Serpent 2017 Ransomware"
},
{
"meta": {
@ -1461,6 +1498,9 @@
},
{
"meta": {
"synonyms": [
"Ransomuhahawhere"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/02/ransomuhahawhere.html"
],
@ -1473,7 +1513,7 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc..",
"value": "Cyber Drill Exercise or Ransomuhahawhere"
"value": "Cyber Drill Exercise "
},
{
"meta": {
@ -1529,6 +1569,9 @@
},
{
"meta": {
"synonyms": [
"File0Locked KZ Ransomware"
],
"refs": [
"https://id-ransomware.blogspot.co.il/2017/01/evil-ransomware.html",
"http://www.enigmasoftware.com/evilransomware-removal/",
@ -1550,7 +1593,7 @@
"date": "January 2017"
},
"description": "Its directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypts all your files, including: music, MS Office, Open Office, pictures, videos, shared online files etc.. Domain KZ is used, therefore it is assumed that the decrypter is from Kazakhstan. Coded in Javascript",
"value": "Evil Ransomware or File0Locked KZ Ransomware"
"value": "Evil Ransomware"
},
{
"meta": {