Donex

Inactive
DoNex is a ransomware strain that emerged in March 2024 as the latest rebrand of a lineage beginning with Muse (2022) → DarkRace (2023) → DoNex, targeting enterprises in the US and Europe using double-extortion; Avast released a free decryptor in July 2024 after discovering a cryptographic flaw.
5 Victims
Feb 21, 2024 First Discovered
Feb 26, 2024 Last Discovered
933 Days Inactive
0% Infostealer
0/1 Sites Online
Known Locations (1)
Donex ransomeware leakage -
g3h3klsev3eiofxhykmtenmdpi67wzmaixredk5pjuttbx7okcfkftqd.onion
Victims (5)

Detailed victim list temporarily unavailable

This group has 5 victims. The victim list API is currently responding slowly for this dataset. Country, sector, and infostealer breakdowns are not available at this time. Basic stats (victim count, first/last seen) are shown above from a faster data source.