MegaCortex — Malware Profile
MegaCortex is ransomware that first appeared in May 2019. MegaCortex has mainly targeted industrial organizations.
MITRE ATT&CK techniques (16)
- T1055.001 Dynamic-link Library Injection
- T1059.003 Windows Command Shell
- T1083 File and Directory Discovery
- T1106 Native API
- T1112 Modify Registry
- T1134 Access Token Manipulation
- T1140 Deobfuscate/Decode Files or Information
- T1218.011 Rundll32
- T1486 Data Encrypted for Impact
- T1489 Service Stop
- T1490 Inhibit System Recovery
- T1497.001 System Checks
- T1531 Account Access Removal
- T1561.001 Disk Content Wipe
- T1588.003 Code Signing Certificates
- T1685 Disable or Modify Tools