Uptime Hamster: 10d 6h 2mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza ContFR

ContFR

2 incidentes 1 paises 1 sectores ransomware FR Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
ContFR, commonly known as the Conti ransomware group, emerged in December 2019 and is understood to be operated by the Russia-based hacking group 'Wizard Spider'. Initially observed under this pseudonym, Conti rapidly evolved into a prolific Ransomware-as-a-Service (RaaS) operation, distinguished by its unique affiliate payment model where deployers received fixed wages rather than a percentage of ransom payments. The group's primary motivation was financial gain through extensive cyberattacks and data extortion. Conti gained notoriety for its exceptionally fast, multi-threaded encryption using AES-256 and its aggressive double extortion tactics, which involved encrypting victims' data and threatening to publish exfiltrated sensitive information on a dedicated leak site. While the Conti brand formally dissolved around May 2022, its underlying codebases, operational methodologies, and some members subsequently splintered and influenced other significant ransomware ecosystems.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / onionunknownzprxx7sfc26rufggreanowmme5qqouqegr2efnko6erycquwvpq5egid.onionContFR
DLS / leak siteunknownransomware.anggipradana.comRansomware Group: ContFR
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Paises objetivo (SOCRadar)

Costa RicaIrelandNetherlandsNew ZealandPeruTaiwan, Province of ChinaUnited States

Sectores atacados

Software (1)

Sectores objetivo (SOCRadar)

Energy & Utilities ManufacturingRetailInformation ServicesEducational ServicesHealthCare & Social AssistancePublic AdministrationTelecommunicationsInsuranceJustice & Safety Activities

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com