Glitch Defunct
Ransomware group first observed in 2020. Uses AnyDesk for deployment.0
Total Victims
2020-07-01
First Seen
2022-09-05
Last Seen
6
Known TTPs
28.2d
Avg Delay
0
Negotiations
ONION URLS
lgtwrqnu26bbn6wjah5q45jtuk7tp5tfu5ghrndtrskwyo7lcxx5nvqu.onion
TOOLS
AnyDesk
QBot
Mimikatz
FILE EXTENSIONS
.gone
ACTIVITY TIMELINE
TOP SECTORS
TOP COUNTRIES
ACTIVITY HEATMAP
| Date | Victim Name | Country | Sector | Status |
|---|---|---|---|---|
| No victims recorded | ||||
| Technique ID | Technique Name | Tactic |
|---|---|---|
| T1036.005 | Match Legitimate Name or Location | Defense Evasion |
| T1070.004 | File Deletion | Defense Evasion |
| T1059.001 | PowerShell | Execution |
| T1078 | Valid Accounts | Initial Access |
| T1195.002 | Compromise Software Supply Chain | Initial Access |
| T1570 | Lateral Tool Transfer | Lateral Movement |
No YARA rules
No IoCs
No ransom notes