Views:

File Reputation

Detection/Policy/RulesPattern Branch/VersionRelease Date / Last Update
Ransom.Win32.DOPPELPAYMER.TGACAR Pattern available in OPR 16.456.00August 08, 2020
Ransom.Win32.DOPPELPAYMER.TGACAQ Pattern available in OPR 16.456.00January 4, 2021
Ransom.Win32.DOPPELPAYMER.TGACAP Pattern available in OPR 16.456.00January 4, 2021
Ransom.Win32.DOPPELPAYMER.MPattern available in OPR 16.158.00August 11, 2020
Ransom.Win32.DOPPELPAYMER.acPattern available in OPR 16.193.00August 28, 2020

Predictive Machine Learning

DetectionPattern Branch/Version
Troj.Win32.TRX.XXPE50FFF036In-the-Cloud

Sandbox Detection

DetectionPattern Branch/Version
VAN_RANSOMWARESandbox Behavior

Solution Map - What should customers do?

Trend Micro SolutionMAJOR PRODUCTSLATEST VERSIONSVIRUS PATTERNANTISPAM PATTERNNETWORK PATTERNBEHAVIOR MONITORINGPREDICTIVE MACHINE LEARNINGWEB REPUTATION
Endpoint SecurityApex One2019Update pattern via web consoleNot ApplicableUpdate pattern via web consoleEnable Behavior Monitoring and update pattern via web consoleEnable Predictive Machine LearningEnable Web Reputation Service and update pattern via web console
OfficeScanXG (12.0)Not Applicable
Worry-Free Business SecurityStandard (10.0)
Advanced (10.0)Update pattern via web console
Hybrid Cloud SecurityDeep Security12Update pattern via web consoleNot ApplicableUpdate pattern via web consoleEnable Behavior Monitoring and update pattern via web consoleEnable Predictive Machine LearningEnable Web Reputation Service and update pattern via web console
Email and Gateway SecurityDeep Discovery Email Inspector3.5Update pattern via web consoleUpdate pattern via web consoleUpdate pattern via web consoleNot ApplicableNot ApplicableEnable Web Reputation Service and update pattern via web console
InterScan Messaging Security9.1Not Applicable
InterScan Web Security6.5
ScanMail for Microsoft Exchange14
Network SecurityDeep Discovery Inspector5.5Update pattern via web consoleNot ApplicableUpdate pattern via web consoleNot ApplicableNot ApplicableEnable Web Reputation Service and update pattern via web console

Recommendation

Make sure to always use the latest pattern available to detect the old and new variants of DoppelPaymer Ransomware. Please refer to the KB article on Recommendations on how to best protect your network using Trend Micro products.

Make sure to implement the ransomware protection features and best practices. Please refer to the KB article on Ransomware: Solutions, Best Practice Configuration and Prevention using Trend Micro products.

You may also check the article on Submitting suspicious or undetected virus for file analysis to Technical Support.

For support assistance, please contact Trend Micro Technical Support.

Threat Report

Blog