{"group":"apt73","count":1,"rules":[{"rule_name":"apt73.yar","rule_text":"/*\napt73 ransomware\n*/\n\nrule apt73_Ransomnote\n{\n    meta:\n        author = \"ransomware.live\"\n        family = \"ransomware.apt73\"\n        description = \"Detects apt73 ransomware ransom note or artifact\"\n        date = \"2026-05-04\"\n        severity = 7\n        score = 70\n\n    strings:\n        $name1 = \"apt73\" ascii nocase\n        $name2 = \"APT73\" ascii\n        $onion  = \"apt73.onion\" ascii nocase\n\n    condition:\n        any of them\n}","sha256":"723c234c44f431de7faf29fbd31634adabc56fb0bcc3632ae9dedf66c7d45e3b","byte_size":435,"updated_at":"2026-06-24 05:15:59"}]}