A Ransomware-as-a-Service (RaaS) that encrypts files using AES-256 and RSA-2048 algorithms. It typically appends the .MEDUSA extension to files and leaves a ransom note titled !!!READ_ME_MEDUSA!!!.txt .
Opening a .rar file can sometimes trigger "living-off-the-land" techniques where legitimate software is used for malicious purposes. breze_medusa (2).rar
An information-stealing Trojan that targets over 100 web browsers to extract saved credentials, cookies, autofill data, and credit card details . It is known for its ability to bypass security measures and send decrypted data to attacker-controlled servers. breze_medusa (2).rar
Upload the file to VirusTotal to check it against dozens of antivirus engines simultaneously. breze_medusa (2).rar