qlocker logo

qlocker

1 incidentes 0 paises 0 sectores ransomware Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
Qlocker is a ransomware group that first emerged with widespread attacks in April 2021, exclusively targeting QNAP Network Attached Storage (NAS) devices. The group's primary motivation is financial gain, achieved by demanding Bitcoin ransoms for decryption keys. What sets Qlocker apart is its unique operational method: instead of deploying custom ransomware binaries, it abuses the legitimate 7-zip archival utility built into QNAP systems to encrypt files. This tactic allows the group to operate without introducing traditional malware, making detection challenging. Although initially believed to have ceased operations in May 2021, Qlocker resurfaced with new campaigns in early 2022.
Tecnicas MITRE
T1486, T1070.004, T1018, T1080

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

Taiwan, Province of ChinaUnited States

Sectores objetivo (SOCRadar)

ManufacturingWholesale TradeRetailInformation ServicesFinanceProfessional&Technical ServicesEnterprises & HoldingEducational ServicesHealthCare & Social AssistanceOther

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com