Skip to content

Malware

TargetCompany

aka Fargo · Mallox · Tohnichi

This ransomware uses a combination of different crypto algorithms (ChaCha20, AES-128, Curve25519).

This ransomware uses a combination of different crypto algorithms (ChaCha20, AES-128, Curve25519). The activity of this malware is dated to mid-June 2021. The extension of the encrypted files are set to the compromised company: .<target_company> A decryptor was released on 2022-02-07 by AVAST


Family metadata imported from Malpedia (Fraunhofer FKIE).