Skip to content

Ransomware

SnatchCrypto

aka BackbitingTea · msoRAT

Malware observed in the SnatchCrypto campaign, attributed by Kaspersky Labs to BlueNoroff with high confidence.

SnatchCrypto, also known as BackbitingTea, msoRAT, is a Windows ransomware operated by Lazarus Group.

Background

Malware seen during the SnatchCrypto campaign, which Kaspersky Labs attributes to BlueNoroff with high confidence.


Source: Malpedia (Fraunhofer FKIE).