DeroHE
- First seen
- 2023-04-15 00:00:00
- Malware type
- ransomware
- Family
- Malware family
- Profile updated
- 2026-07-07 14:57:33
Targeted industries: healthcare-and-pharmaceutical financial-services government-and-public-sector
Context
DeroHE is a ransomware family known for encrypting files and demanding a cryptocurrency ransom. It targets various industries and employs complex encryption techniques to prevent data recovery without payment.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Derohe_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Derohe (report)
- bleepingcomputer.com — Iobit Forums Hacked To Spread Ransomware To Its Members (report)