Ransomware

Avaddon

First seen: 2020-02 • Status: inactive

Currently Inactive

Avaddon ransomware unexpectedly shut down and gave away all their decryption keys. Victims could decrypt their files for free.

Overview

Avaddon was a ransomware-as-a-service that suddenly shut down in 2021, releasing decryption keys for all victims.

How It Spreads

  • Malspam
  • Phishing
  • Affiliates

What It Does

  • File encryption
  • DDoS attacks on victims

Is your business exposed?

Target Platforms

Windows

Detection Tips

  • Check for released decryptors
  • Historical threat

MITRE ATT&CK Techniques

T1486, T1498

If You're Infected

  1. 1.

    Use released decryption keys

  2. 2.

    Check NoMoreRansom.org

Related Malware

Revil, Gandcrab

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required