PULSE NAME
Dark Web Profile: BQTLock Ransomware.
WHITE PetrP.73 2025-09-17 Modified: 2025-10-17
92
IOCs
HIGH VOLUME
BQTLock is a newly emerged Ransomware-as-a-Service (RaaS) that has rapidly gained notoriety for its aggressive operational tactics and sophisticated technical capabilities. Originating from the Middle East, the threat group behind BQTLock is led by Karim Fayad, who operates under aliases such as ZeroDayX and ZeroDayX1, with an associated member named Fuch0u. The group seems to engage with pro-Palestinian hacktivist organizations, leveraging social networks for mutual promotion and potentially collaboration.
Indicators of Compromise (1 / 92 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain email
TYPEINDICATORDESCRIPTIONCREATED
URL https://guns.lol/zerodayx 2025-09-17