WannaRen
- First seen
- 2020-04-02 00:00:00
- Malware type
- ransomware
- Profile updated
- 2026-07-07 15:26:03
Targeted industries: government-and-public-sector professional-services technology-and-telecommunications
Targeted regions: country_code:cn
Context
WannaRen is ransomware that encrypts files on infected systems, demanding a ransom for decryption. It primarily targets organizations in specific industries and regions.
Detection coverage
- 1 YARA rules
Detection rules
- TRELLIX_ARC_Wannaren_Ransomware (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Wannaren (report)
- id-ransomware.blogspot.com — Wannaren Ransomware (report)