snatch
Snatch is a ransomware which infects victims by rebooting the PC into Safe Mode. Most of the existing security protections do not run in Safe Mode so that it the malware can act without expected countermeasures and it can encrypt as many files as it finds. It uses common packers such as UPX to hide its payload.
| Name | Country | Sector | Date |
|---|---|---|---|
| Neovia | FR | Transportation/Logistics | 2024-05-16 14:16:40.764921 |
| UK government | GB | Government | 2024-05-01 10:34:36.537404 |
| The Royal Family of Great Britain | GB | Government | 2024-04-16 09:53:47.412709 |
| Miki Travel Limited | GB | Hospitality and Tourism | 2024-03-27 07:19:34.471369 |
| Retirement Line | GB | Financial | 2024-03-19 16:48:05.591785 |
| Butler, Lavanceau & Sober | US | Financial | 2024-03-18 21:18:27.088825 |
| Dörr Group | DE | Business Services | 2024-03-13 07:41:55.330151 |
| Seven Seas Group | AE | Not Found | 2024-03-05 06:53:23.683208 |
| HSPG & Associates | US | Healthcare | 2024-02-29 09:08:00.303103 |
| Frencken | MY | Manufacturing | 2024-02-28 07:00:21.866110 |
| Hawbaker Engineering | US | Business Services | 2024-02-15 12:16:55.924942 |
| US government (private data) +Rothschild&Rockefeller | US | Government | 2024-01-26 17:03:36.331320 |
| US government (private data) | US | Government | 2024-01-24 16:23:01.576753 |
| Charm Sciences | US | Healthcare | 2024-01-13 09:56:06.785184 |
| Malabar Gold & Diamonds | IN | Business Services | 2024-01-13 09:55:21.906768 |
| Banco Promerica | CR | Financial | 2024-01-13 09:53:43.337138 |
| Kraft Foods | — | — | 2023-12-16 17:23:10.488600 |
| Spaulding Clinical | — | — | 2023-12-16 17:22:50.342349 |
| Jerry Pate Energy (hack from Saltmarsh Financial Advisors) | — | — | 2023-12-08 13:10:35.163971 |
| Maldives Ports Limited | MV | — | 2023-11-29 10:09:19.674328 |
| Montachusett Regional Vocational Technical School District | US | — | 2023-11-29 10:07:42.227750 |
| Museum für Naturkunde | — | — | 2023-11-29 10:06:04.428762 |
| ALVImedica | — | — | 2023-11-29 10:04:26.647984 |
| Kologik | — | — | 2023-11-29 10:02:47.984476 |
| Tyson Foods | — | — | 2023-11-29 10:01:07.783132 |
| Hunt Guillot & Associates | — | — | 2023-11-29 09:47:23.327435 |
| Canadian Psychological Association | CA | — | 2023-11-29 09:45:41.533392 |
| Detroit Symphony Orchestra | — | — | 2023-11-02 01:03:00.980971 |
| M&n Management | — | — | 2023-10-25 21:26:21.065027 |
| Ancillae-Assumpta Academy | — | — | 2023-10-25 21:25:27.195180 |
| Cogal Industry | — | — | 2023-10-15 23:42:54.867942 |
| Intech | — | — | 2023-10-13 23:52:39.007141 |
| Alliance Virgil Roberts Leadership Academy | — | — | 2023-10-10 22:16:25.279181 |
| CEFCO | — | — | 2023-09-18 23:44:02.844449 |
| ZILLI | — | — | 2023-09-18 23:43:35.959853 |
| Florida Department of Veterans' Affairs | — | — | 2023-09-18 23:43:07.507908 |
| Knight Barry Title | — | — | 2023-09-03 23:34:45.505776 |
| Fullerton India (SMFG India Credit) | ML | — | 2023-08-26 23:43:24.771661 |
| Department of Defence South African (DARPA) | ZA | — | 2023-08-21 22:08:38.902534 |
| Department of Defence South African | ZA | — | 2023-08-21 14:00:55.756554 |
| Alinabal | — | — | 2023-07-29 00:13:27.173685 |
| Tampa general hospital | — | — | 2023-07-18 16:07:03.187967 |
| Seasia Infotech | — | — | 2023-07-18 01:04:11.795553 |
| Ningbo Joyson Electronic Corp. | CN | — | 2023-07-18 01:04:09.854252 |
| Wasserstrom | — | — | 2023-07-18 01:04:07.922226 |
| Medical University of the Americas | — | — | 2023-06-21 12:18:07.115083 |
| Telcoset | — | — | 2023-06-20 02:01:04.873007 |
| Tetrosyl Group | — | — | 2023-06-14 00:06:34.571787 |
| James Briggs Limited | — | — | 2023-06-14 00:05:51.972981 |
| Bunker Hill Community College | — | — | 2023-06-14 00:05:18.420204 |
Data from ransomware.live