{"id":2622,"date":"2021-05-07T20:47:04","date_gmt":"2021-05-08T01:47:04","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=2622"},"modified":"2021-05-07T20:47:05","modified_gmt":"2021-05-08T01:47:05","slug":"avaddon-the-ransomware-that-uses-ddos-attacks","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/","title":{"rendered":"Avaddon, the ransomware that uses DDoS attacks"},"content":{"rendered":"\n<p>The Avaddon ransomware group, known for using Excel 4.0 macros as an infection vector, has begun to use distributed denial of service (DDoS) attacks as a strategy to pressure its victims to make the infection ransom payment. This threat had a great impact during 2020 and there was an increase in this type of attack and in new families compared to previous years, boosted by the context of the pandemic. More frequent email and instant messaging, the first-time use of video conferencing applications for large numbers of people, and even the sudden switch to telecommuting were just some of the factors that created a more conducive scenario for ransomware attacks.<\/p>\n\n\n\n<p>Avaddon is one of the busiest groups so far in 2021 &#8211; a ransomware as a service (RaaS) that was first reported in June 2020 and has a solid reputation in black markets. Although the most common targets of attack in its short period of life have been small and medium-sized companies in Europe and the United States, something that caught our attention is the number of people affected by this ransomware in Latin America, affecting government agencies and industrial companies. like health or telecommunications.<\/p>\n\n\n\n<p>Avaddon is written in C ++ and can be recognized by the &#8220;.avdn&#8221; extension attached to encrypted files in certain versions. Also, it uses a hybrid encryption method, similar to other modern ransomware, using AES256 and RSA2048 encryption keys.<\/p>\n\n\n\n<p>Avaddon follows the popular double extortion technique by threatening to expose his victims&#8217; data on a &#8220;leak website&#8221; where they also post snippets of the stolen data as a lever to force payment of the ransom demand.<\/p>\n\n\n\n<p>Some of the initial access mechanisms used by this ransomware were phishing emails with attachments in ZIP format containing a malicious javascript file. These emails included a message in the body of the email that sought to arouse the user&#8217;s curiosity, such as a supposed photo or similar.<\/p>\n\n\n\n<p>Related reads:<br><a href=\"https:\/\/truxgoservers.com\/blog\/babuk-locker-the-first-ransomware-of-2021\/\">Babuk Locker \u2013 The First Ransomware of 2021<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/gafgyt-is-a-botnet-that-uses-mirai-ddos-modules\/\">Gafgyt is a botnet that uses Mirai DDoS modules<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Avaddon ransomware group, known for using Excel 4.0 macros as an infection vector, has begun to use distributed denial of service (DDoS) attacks as a strategy to pressure its victims to make the infection ransom payment. This threat had a great impact during 2020 and there was an increase in this type of attack [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2623,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-2622","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Avaddon, the ransomware that uses DDoS attacks - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Ransomware keeps changing and getting more complicated with the passage of time and a test is the Avaddon ransomware which we will see today..\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Avaddon, the ransomware that uses DDoS attacks - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Ransomware keeps changing and getting more complicated with the passage of time and a test is the Avaddon ransomware which we will see today..\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2021-05-08T01:47:04+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-05-08T01:47:05+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Avaddon.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"710\" \/>\n\t<meta property=\"og:image:height\" content=\"400\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"Avaddon, the ransomware that uses DDoS attacks\",\"datePublished\":\"2021-05-08T01:47:04+00:00\",\"dateModified\":\"2021-05-08T01:47:05+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/\"},\"wordCount\":339,\"commentCount\":4,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Avaddon.jpg\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/\",\"name\":\"Avaddon, the ransomware that uses DDoS attacks - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Avaddon.jpg\",\"datePublished\":\"2021-05-08T01:47:04+00:00\",\"dateModified\":\"2021-05-08T01:47:05+00:00\",\"description\":\"Ransomware keeps changing and getting more complicated with the passage of time and a test is the Avaddon ransomware which we will see today..\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Avaddon.jpg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/Avaddon.jpg\",\"width\":710,\"height\":400,\"caption\":\"Ransomware red button on keyboard, 3D rendering\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/avaddon-the-ransomware-that-uses-ddos-attacks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Avaddon, the ransomware that uses DDoS attacks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Avaddon, the ransomware that uses DDoS attacks - Truxgo Server Blog","description":"Ransomware keeps changing and getting more complicated with the passage of time and a test is the Avaddon ransomware which we will see today..","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/","og_locale":"es_MX","og_type":"article","og_title":"Avaddon, the ransomware that uses DDoS attacks - Truxgo Server Blog","og_description":"Ransomware keeps changing and getting more complicated with the passage of time and a test is the Avaddon ransomware which we will see today..","og_url":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/","og_site_name":"Truxgo Server Blog","article_published_time":"2021-05-08T01:47:04+00:00","article_modified_time":"2021-05-08T01:47:05+00:00","og_image":[{"width":710,"height":400,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Avaddon.jpg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"Avaddon, the ransomware that uses DDoS attacks","datePublished":"2021-05-08T01:47:04+00:00","dateModified":"2021-05-08T01:47:05+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/"},"wordCount":339,"commentCount":4,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Avaddon.jpg","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/","url":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/","name":"Avaddon, the ransomware that uses DDoS attacks - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Avaddon.jpg","datePublished":"2021-05-08T01:47:04+00:00","dateModified":"2021-05-08T01:47:05+00:00","description":"Ransomware keeps changing and getting more complicated with the passage of time and a test is the Avaddon ransomware which we will see today..","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Avaddon.jpg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/05\/Avaddon.jpg","width":710,"height":400,"caption":"Ransomware red button on keyboard, 3D rendering"},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/avaddon-the-ransomware-that-uses-ddos-attacks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Avaddon, the ransomware that uses DDoS attacks"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2622","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=2622"}],"version-history":[{"count":3,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2622\/revisions"}],"predecessor-version":[{"id":2647,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2622\/revisions\/2647"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/2623"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=2622"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=2622"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=2622"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}