A new Linux version of TargetCompany ransomware targets VMware ESXi environments

A new Linux variant of the TargetCompany ransomware family targets VMware ESXi environments using a custom shell script.

Security Affairs

The #TargetCompany #ransomware group has introduced a #Linux variant that uses a custom shell script for payload delivery. It targets #ESXi environments to disrupt operations.

Learn more in our full research: ⬇️ https://www.trendmicro.com/en_us/research/24/f/targetcompany-s-linux-variant-targets-esxi-environments.html?utm_source=trendmicroresearch&utm_medium=smk&utm_campaign=062024_TargetCompanyLinux

TargetCompany’s Linux Variant Targets ESXi Environments

Trend Micro

Some very fresh #targetcompany #ransomware at:

http://80.66.75[.40/Fpgwaghdi.exe -> https://qu[.ax/cepx.mp4

https://app.any.run/tasks/8e54570c-963d-4ca3-a82f-98e6e1c495d3#

Analysis Fpgwaghdi.exe (MD5: B427F0DA0DE80D69C4ECAAFD3A8BA4B6) Malicious activity - Interactive analysis ANY.RUN

Interactive malware hunting service. Live testing of most type of threats in any environments. No installation and no waiting necessary.

@firstadopter I really hope #Target celebrates these employees! #TargetStores #TargetCompany
a4b54716467cbada43e74f7d4a47fc0f02d474937b2c1b8956081007fb80dd4d (MD5: DEA5DF7E709F087F2C1D03046F38EFE7) - Interactive analysis - ANY.RUN

Interactive malware hunting service. Live testing of most type of threats in any environments. No installation and no waiting necessary.

#Microsoft #SQL servers hacked in #TargetCompany ransomware attacks

Source
https://asec.ahnlab.com/en/39152/

FARGO Ransomware (Mallox) Being Distributed to Vulnerable MS-SQL Servers - ASEC BLOG

AhnLab Security Emergency response Center

ASEC BLOG