TrinityLock
(Active)
Aliases
Trinity
Decryptor Available
No
Description
This entry is under construction. However, we have included some details below.
Ransomware Type
Crypto-Ransomware
Data Broker
First Seen
Lineage
Extortion Links
Medio
Link
Clearnet
http://trinitylock.io
TOR
http://txtggyng5euqkyzl2knbejwpm4rlq575jn2egqldu27osbqytrj6ruyd.onion
Extortion Types
Direct Extortion
Double Extortion
Communication
Medio
Identificativo
Email
wehaveyourdata@onionmail.org
Encryption
Type
Hybrid
Files
XChaCha20
Additional Encryption
curve25519xsalsa20poly1305
File Extension
<file name>.<file extension>.trinitylock
Ransom Note Name
README.txt
Ransom Note Image
Samples (SHA-256)
36696ba25bdc8df0612b638430a70e5ff6c5f9e75517ad401727be03b26d8ec4
Known Victims(12)
Industry Sector | Paese | Extortion Date | Amount (USD) |
---|---|---|---|
Individual | Unknown | ||
Information Technology | Philippines | ||
Professional Services | Canada | ||
Environmental Services | Canada | ||
Banking & Finance | United States | ||
Healthcare & Medicine | United Kingdom | ||
Healthcare & Medicine | United Kingdom | ||
Individual | Unknown | ||
Fashion & Textiles | China | ||
Healthcare & Medicine | United States | ||
Manufacturing | Argentina | ||
Information Technology | Brazil |
References & Publications(7)
Broadcom: Trinity Ransomware
BleepingComputer Forums: Trinity Ransomware (.trinitylock) Support Topic
BleepingComputer Forums: Trinity Ransomware (.xxxx.trinitylock)
PCrisk: Trinity Ransomware