netwalker
NetWalker ransomware group operates by the threat actor known as "CIRCUS SPIDER". The NetWalker ransomware was discovered in 2019. The group mainly targeting the Asia Pacific region but can attack globally. The group uses common attacking tools like Mimikatz and other legitimate tools (LOLBINS) like PSTools, AnyDesk, TeamViewer, NLBrute, and more. The group knowing by targeting the healthcare sector. Finally, in January 2021, Netwalker was takedown by the authorities, the police have confiscated hundreds of thousands of dollars in ransom payments collected by the Netwalker group, and they seized servers and disrupted the infrastructure and the darknet websites of the Netwalker ransomware group.
| Name | Country | Sector | Date |
|---|---|---|---|
| Nygard International | CA | Commercial Facilities | 2020-12-12 00:00:00.000000 |
| CSAT Solutions | — | Information Technology | 2020-12-01 00:00:00.000000 |
| Enel Group | — | Energy | 2020-10-19 00:00:00.000000 |
| KYB Corporation | US | Critical Manufacturing | 2020-10-01 00:00:00.000000 |
| Wilmington Surgical Associates | US | Healthcare and Public Health | 2020-10-01 00:00:00.000000 |
| Equinix | US | Information Technology | 2020-09-07 00:00:00.000000 |
| K-Electric (electric utility supplier) | PK | Energy | 2020-09-07 00:00:00.000000 |
| Jands | AU | Critical Manufacturing | 2020-09-01 00:00:00.000000 |
| Cygilant (threat detection cybersecurity company) | — | Information Technology | 2020-09-01 00:00:00.000000 |
| Direccion Nacional de Migraciones (Argentina's official immigration agency) | AR | Government Facilities | 2020-08-27 00:00:00.000000 |
| Entrust Energy | US | Energy | 2020-08-05 00:00:00.000000 |
| Center for Fertility and Gynecology (Los Angeles) | US | Healthcare and Public Health | 2020-08-01 00:00:00.000000 |
| Olympia House (Petaluma) | US | Healthcare and Public Health | 2020-08-01 00:00:00.000000 |
| Forsee Power | — | Critical Manufacturing | 2020-08-01 00:00:00.000000 |
| Canadian Tire | CA | Commercial Facilities | 2020-08-01 00:00:00.000000 |
| Alfanar | — | Critical Manufacturing | 2020-07-09 00:00:00.000000 |
| Trinity Metro (Fort Worth transit agency) | US | Transportation Systems | 2020-07-01 00:00:00.000000 |
| Lorien Health Services | US | Healthcare and Public Health | 2020-06-06 00:00:00.000000 |
| Columbia College of Chicago | US | Education Facilities | 2020-06-03 00:00:00.000000 |
| University of San Francisco (UCSF) | US | Education Facilities | 2020-06-01 00:00:00.000000 |
| Michigan State University | US | Education Facilities | 2020-05-27 00:00:00.000000 |
| Network of Village of Weiz | AT | Government Facilities | 2020-05-01 00:00:00.000000 |
| Spectra Logic | US | Information Technology | 2020-05-01 00:00:00.000000 |
| Northwest Territories Power Corporation | CA | Energy | 2020-04-30 00:00:00.000000 |
| Champaign-Urbana Public Health District | US | Healthcare and Public Health | 2020-03-10 00:00:00.000000 |
| Toll Group | AU | Transportation Systems | 2020-01-31 00:00:00.000000 |
Data from ransomware.live