Mercury Ransomware

Malware type
ransomware
Profile updated
2026-07-07 13:43:18

Targeted industries: financial-services healthcare-and-pharmaceutical technology-and-telecommunications

Context

extension ".Mercury", note "!!!READ_IT!!!.txt" with 4 different 64-char hex as ID, 3 of which have dashes. Possible filemarker, same in different victim's files.

Reports & references

  • twitter.com — 1072164314608480257 (report)

External references