S1033Windows

S1033DCSrv

Platforms
1
ATT&CK
14.1
References
2

Description

[DCSrv](https://attack.mitre.org/software/S1033) is destructive malware that has been used by [Moses Staff](https://attack.mitre.org/groups/G1009) since at least September 2021. Though [DCSrv](https://attack.mitre.org/software/S1033) has ransomware-like capabilities, [Moses Staff](https://attack.mitre.org/groups/G1009) does not demand ransom or offer a decryption key.(Citation: Checkpoint MosesStaff Nov 2021)

Platforms· 1

Windows

Attributed to1

TypeTargetConfidenceTier
GroupMoses Staffg1009100%live

References

  1. https://attack.mitre.org/software/S1033
  2. https://research.checkpoint.com/2021/mosesstaff-targeting-israeli-companies/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
PyDCrypt
Software
StrifeWater
Software
Royal
Software
DCRTR
Software
ccf32
Software
AvosLocker
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.