New Ransomware Eldorado Targets VMware ESXi and Windows VMs

10 Jul 2024

A new ransomware named Eldorado has emerged, targeting VMware ESXi and Windows VMs across multiple organizations and sectors. The ransomware, operated as a service, uses various tactics to infiltrate systems and encrypt data.

A Sophisticated Threat

The administrator of the RaaS service utilized NTLM or administrator passwords to generate ransomware samples. Eldorado, built on Golang for cross-platform operations, boasts customization capabilities that enhance its success rate. It tailors attacks using company names, target networks, admin credentials, and ransom note details.

As of June 2024, 16 companies in the US and Europe have reported being attacked. The real estate sector is the primary target, with other industries like professional services, healthcare, education, and manufacturing also affected. Some attacks even targeted business services, messaging and telecommunications, transportation, government, administrative services, and the military.

Recommendations for Mitigation

Group-IB advises organizations to strengthen security measures to mitigate risks posed by ransomware attacks like Eldorado. Recommendations include:

  • Employee Training: Educate staff to identify phishing attacks and other common infiltration tactics.
  • Regular Data Backups: Ensure data is backed up frequently and securely to minimize damage in case of an attack.
  • Robust Security Protocols: Implement strong security measures such as multi-factor authentication and regular system updates.

These measures are essential to safeguard organizations against evolving ransomware threats.

For more information on the Eldorado ransomware threat, refer to Group-IB’s detailed report.

Anuj Mudaliar, a tech editor at Spiceworks, covers various topics, including cloud, cybersecurity, AI, and hardware. Outside of work, Anuj enjoys outdoor activities like trekking, camping, and stargazing. He also has a passion for cooking and exploring global cuisines.

What is an eldorado?

El Dorado is a term that originated from Spanish explorers, referring to a mythical city or empire of immense wealth, often associated with gold. Over the years, it has come to symbolize any ultimate prize or

Top charts for Desktop Windows

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
7333319
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1692649
downloads
WinRAR

WinRAR

Streamline file management with fast compression, secure your documents, and save space.

5
735 reviews
726709
downloads
Minecraft

Minecraft

Shape environments, explore vast worlds, and survive against monsters with endless creativity.

5
750 reviews
490720
downloads

News and reviews for Desktop Windows

Fanatical Introduces Build Your Own Indie Bundle for 2026

Fanatical's Indie Legends BYOB offer lets you create a custom Steam game bundle. Tiered pricing available until 2026-02-19.

Read more

0patch Extends Windows 10 Security Beyond Microsoft Support

0patch provides micropatches for Windows 10 after Microsoft support ended in 2025, offering a security alternative.

Read more

Lovish Set to Launch on Steam with 50+ Levels

LABS Works to release Lovish, a puzzle platformer, on Steam on February 5, featuring 50+ levels and Astalon-style elements.

Read more

Epic Games Store Offers Free Styx Stealth Games

Epic Games Store offers Styx games free until 2023-01-22. Prepare for Styx: Blades of Greed release in February.

Read more

Hytale Now Playable on Steam Deck via Linux Installer

Hytale can now run on Steam Deck using its Linux installer, enhancing compatibility for portable gaming.

Read more

Monster Hunter Wilds DLC May Impact PC Frame Rates

Redditor links Monster Hunter Wilds PC slowdowns to DLC checks. Capcom informed, awaiting response.

Read more

Monster Hunter PC Performance Improved by DLC Workaround

Monster Hunter Wilds runs smoother on PC when all DLC is flagged as owned, per a user-mod solution.

Read more

Bully Online Mod Withdrawn After One Month

Bully Online mod, adding GTA Online features, has been withdrawn. Shutdown unclear; creator Swegta to address this on January 21.

Read more

Styx Demo and Free Games Offered by Nacon

Nacon offers free Styx games on Epic Games Store and a demo for Styx: Blades of Greed, releasing 2026.

Read more

Mod Improves Performance in Monster Hunter Wilds on PC

A player mod greatly boosts Monster Hunter Wilds PC performance by resolving DLC check issues, enhancing gameplay.

Read more