GroupProfiles: Interlock.md
Recurso del BushidoUK Ransomware Tool Matrix - GroupProfiles.
Interlock's Tools
| Discovery | RMM Tools | Defense Evasion | Credential Theft | OffSec | Networking | LOLBAS | Exfiltration |
|---|---|---|---|---|---|---|---|
| Advanced Port Scanner | AnyDesk | ProcessHacker | | Cobalt Strike | PuTTY | PsExec | AZCopy |
| Azure Storage Explorer | ScreenConnect | ThreatFire System Monitor driver | | | | | WinSCP |
> [!NOTE]
> This is the list of tools that have been observed during various intrusions that lead to Interlock ransomware deployment.
#### Sources
| Date Published | Report |
|---|---|
| 22 July 2025 | https://www.cisa.gov/news-events/cybersecurity-advisories/aa25-203a |
| 7 November 2024 | https://blog.talosintelligence.com/emerging-interlock-ransomware/ |