Evilquest

Malware updated 2 months ago (2024-11-29T13:33:29.310Z)
Download STIX
Preview STIX
EvilQuest, also known as ThiefQuest or MacRansom.K, is a significant development in the realm of malware. This malicious software, first identified by researchers at Malwarebytes who initially named it "EvilQuest", was later renamed "ThiefQuest". The malware operates as a combination of ransomware, data thief, and spyware, posing a substantial threat to computer systems, particularly those running macOS. Its primary distribution method has been through pirated software, infiltrating systems often without user knowledge. Despite its initial classification as ransomware, subsequent analysis revealed that EvilQuest's ransomware functionality was not as effective as initially thought. Some experts suggested that it was merely pretending to be ransomware while primarily focusing on transferring data from infected systems. This discovery led to the conclusion that the primary objective of EvilQuest might be data theft rather than holding user data for ransom. However, this did not diminish the potential harm it could cause, as it still disrupted operations and posed a risk to personal information. EvilQuest remains one of the most common types of adware affecting macOS systems. Protection against this malware has been a focal point for cybersecurity firms such as SentinelOne. Despite the threat it poses, tools have been developed to combat EvilQuest, with demonstrations of ransomware decryption in action providing hope for affected users. The emergence of EvilQuest underscores the evolving nature of cyber threats and the importance of vigilance and robust cybersecurity measures.
Description last updated: 2024-05-05T11:32:20.503Z
What's your take? (Question 1 of 2)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Possible Aliases / Cluster overlaps
It's hard to track cluster overlaps and naming conventions between vendors, so here are some possible overlapping names / profiles you also may want to look at. Create a free account to see the source evidence for each alias, and help fix any errors.
Alias DescriptionVotes
ThiefQuest is a possible alias for Evilquest. ThiefQuest, also known as EvilQuest and MacRansom.K, is a malware that was initially perceived as ransomware targeting Mac systems. This malicious software was first discovered spreading through pirated software found on a Russian torrent forum. However, subsequent analysis revealed that ThiefQuest
2
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Ransomware
Macos
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the Evilquest Malware was read from the documents corpus below. This display is limited to 20 results, create a free account to see more