Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Trinity

Trinity ransomware was first discovered in May 2024, believed to be a rebrand of the Venus/2023Lock variants, using ChaCha20 encryption and double-extortion via a Tor leak site; the US HHS flagged it as a specific threat to the healthcare sector after confirmed attacks on healthcare organizations.

Victims
18
 
First Discovered
2024-06-11
victim
Last Discovered
2025-03-16
victim
Inactive Since
1yr
more than
Avg Delay
5
days
Infostealer
23.5%
victims with domain
Countries
9
hit
View Victims on World Map View Group Statistics

Known Locations (1)
Favicon Title Type Available Last Visit Server Info FQDN
favicon rans No 2026-04-28T07:21:56 txtggyng5euqkyzl2knbejwpm4rlq575jn2egqldu27osbqytrj6ruyd.onion

Target
Top 5 Activity Sectors
  • Business Services 6
  • Healthcare 3
  • Manufacturing 2
  • Technology 2
  • Consumer Services 1
Top 5 Countries
  • US flag United States 7
  • ES flag Spain 2
  • CA flag Canada 2
  • IN flag India 1
  • CN flag China 1

Heatmap

Ransom Notes (1)

Negotiation Chats (14)
0001 2 msgs
0002 52 msgs
0003 298 msgs
0004 170 msgs
0005 14 msgs
0006 11 msgs
0007 36 msgs
0008 13 msgs
0009 6 msgs
0010 8 msgs
0011 50 msgs
0012 15 msgs
0013 32 msgs
0014 6 msgs

YARA Rules (1)

Indicators of Compromise (IoCs) (1)
Email 1
Type IOC
Email helpdesk101@onionmail.com

Victims (18)
Logo
Discovered: 2025-03-16 (1y ago)
[AI generated] Kairav Chemofarbe Industries Ltd is a pharmaceutical company based in Mumbai, India. …
Logo
Discovered: 2025-03-16 (1y ago)
219GB…
Logo
Discovered: 2025-03-16 (1y ago)
[AI generated] N/A…
Logo
Discovered: 2025-03-16 (1y ago)
190Gb…
Logo
Discovered: 2025-03-16 (1y ago)
[AI generated] CANAM Realty Group is a full-service real estate company based in Arizona, United Sta…
Logo
Discovered: 2025-03-16 (1y ago)
[redacted]…
Logo
Discovered: 2025-03-16 (1y ago)
[AI generated] La-Z-Boy is a renowned furniture company based in the USA, most known for their iconi…
Logo
Discovered: 2024-11-30 (1y ago)
560Gb - Revenue: 38$mln - Publication date: 2024-12-31…
Logo
Discovered: 2024-10-03 (1y ago)
15Gb - Revenue: <$5 Million - Publication date: 2024-11-04…
Logo
Discovered: 2024-10-02 (1y ago)
Data base 300 GB - Revenue: $ 20 Million - Publication date: 2024-11-01…
Logo
Discovered: 2024-09-23 (1y ago)
Data base 20+tb - Revenue: $ 59.2 Million - Publication date: 2024-10-23…
Logo
Discovered: 2024-09-15 (1y ago)
330Gb - Revenue: $60.3 Million - Publication date: 2024-10-16…
Logo
Discovered: 2024-09-01 (1y ago)
full data base - Revenue: <$5 Million - Publication date: 2024-10-01…
Logo
Discovered: 2024-08-18 (1y ago)
3.63 Tb - Revenue: <$5 Million - Publication date: 2024-09-18…
Logo
Discovered: 2024-08-13 (1y ago)
full data base(1,5 TB) - Revenue: $7.6 Million - Publication date: 2024-09-20…
Logo
Discovered: 2024-06-12 (1y ago)
sgvfr.com - Revenue: 5kk - Publication date: 2024-06-30…
Logo
Discovered: 2024-06-12 (1y ago)
CBSTRAINING - Publication date: 2024-06-30…
Logo
Discovered: 2024-06-11 (1y ago)  ·  Attack est.: 2024-06-06
www.filmetrics.com.ph…