Checkpoint unveiled a new ransomware virus whose traces lead to Iran

Posted on Nov 12, 2020 by Ifi Reporter - Dan Bielski

On Thursday, Checkpoint unveiled a new ransomware virus whose traces lead to Iran. The creators of the heresy have succeeded in harming a number of Israeli companies, including a leading law firm and a high-tech gaming company. The materials on the affected companies were partly leaked to Darknet as part of the infidelity attack. The ransom demanded by the attackers was about 7-9 bitcoins (currently about $ 112,000). It is important to note that this heresy is a new heresy and not the same one that has recently hit the Tower Company or the Sapphire Company.
Check Point experts state that the intrusion into companies was carried out through a mechanism for remotely connecting employees to the corporate network. Will be paid. " Check Point reported that in at least three cases, hackers did leak information belonging to organizations attacked by the dark web.
According to a test conducted at Check Point Laboratories, four Israeli victims of Pay2Key decided to pay the ransom, which allowed investigators to track the transfers of funds between Bitcoin wallets. In collaboration with Whitestream, an Israeli intelligence company in the field of blockchain, the researchers followed the sequence of bitcoin transactions carried out by the attackers and found that they all end in an Iranian bitcoin trading arena called Excoino. Tracking began with bitcoin wallet addresses given to victims in order to transfer the required ransom to them, proceeded to an intermediate wallet, and eventually to edge wallets associated with the Iranian Excoino.
Excoino is an Iranian entity that provides secure cryptocurrency transaction services to Iranian citizens only. Registration will require the user to have a valid Iranian phone number Iranian identity card. The stock exchange also requires a copy of the identity card itself in order to be eligible for money transfers. Based on this trajectory, Check Point investigators concluded that the attackers behind Pay2Key were most likely citizens of Iranian descent.


ABOUT IFI TODAY

Lorem ipsum dolor sit amet, consectetur adipisicing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Duis aute irure dolor in reprehenderit in voluptate velit esse cillum

Newsline

El Al Appoints Levi Halevi as New CEO; CFO Yaakov Shahar to Retire

Sep 20, 2026 by Ifi Reporter - Dan Bielski

El Al Israel Airlines announced a major leadership transition this afternoon, with the appointment of Levi Halevi as the airline’s new Chief Executive Officer . The decision was made by El Al’s Board of Directors , following the recommendation of a search committee... Continue reading →

Idit Catering of Dan Hotels Group Wins Contract to Operate Meat-Based Dining at Rafael

Mar 21, 2026 by Ifi Reporter - Dan Bielski

Idit, a catering company within the Dan Hotels Group, has won a tender to operate the meat-focused dining services for Rafael Advanced Defense Systems. Under the agreement, Idit will provide thousands of meat-based meals daily across Rafael’s sites. As part of its meat dining... Continue reading →

PR Leaders Zvi Wilder and Shira Fachter Launch Strategic Collaboration Across General and Haredi Sectors

Mar 21, 2026 by Ifi Reporter - Dan Bielski

Prominent Israeli communications advisor Zvi Wilder, owner of Wilder Public Relations, and Shira Fachter, host of the television program Vaart on Channel 13 and a leading influencer in the Haredi sector, have announced a strategic partnership to jointly manage campaigns across both the... Continue reading →


Testimonials

No testimonials. Click here to add your testimonials.