Resources/YouTube Videos/Ransomware Demo: SentinelOne vs. Good Day Ransomware – Detection and Mitigation
June 28, 2023
Ransomware Demo: SentinelOne vs. Good Day Ransomware – Detection and Mitigation
In this video, we show SentinelOne’s ability to detect, mitigate, and roll back Good Day ransomware. First observed in May 2023, Good Day ransomware is a member of the ARCrypter family. This variant’s name derives from the message displayed to victims when they visit the threat actor’s victim portal, a TOR-based website.
ARCrypter is associated with notable attacks against the Chilean government. Other variants include ChileLocker and REDALERT ransomware. Good Day ransomware payloads masquerade as valid updates for the Windows OS (ex: n211p1a1hs1_win_x64_v1a.exe). Initial delivery methods of Good Day payloads are phishing email with links to the masqueraded payload.
There is not currently a public victim blog /website for Good Day ransomware. Instaed, victims are required to engage the threat actor via a TOR-based portal for instructions on 'recovering their data.'
Watch the demo to understand how SentinelOne's advanced threat detection and prevention capabilities can protect your systems against threats like Good Day. For more technical insights and cybersecurity updates, subscribe to our channel.
Ransomware Demo: SentinelOne vs. Good Day Ransomware – Detection and Mitigation
YouTube Video
Related Resources
YouTube Video
SentinelOne PartnerOne - America's 2025
⛳️ Last week in Pebble Beach the America's best cybersecurity partners came together for our annual PartnerOne summit. Check out…
Watch Now
YouTube Video
Just a Sec: Cybersecurity Unfiltered—Fast, Frank, and From the Front Lines
Welcome to the first-ever Just A Sec, a no-holds-barred, quick-fire monthly livestream. It’s cybersecurity like you’ve never heard it before—unfiltered,…
Watch Now
YouTube Video
LABScon24 Replay | A Walking Red Flag (With Yellow Stars) | Cary & Benincasa
China's cybersecurity competition ecosystem has grown significantly since 2017, with over 150 unique events and more than 400 total competitions.…
Watch Now
YouTube Video
LABScon24 Replay | Kryptina RaaS: From Unsellable Cast-off to Enterprise Ransomware | Jim Walter
Kryptina RaaS, originally a free giveaway, has evolved into a tool for large ransomware groups targeting Linux and cloud environments.…
Watch Now
Experience the World’s Most Advanced Cybersecurity Platform
See how our intelligent, autonomous cybersecurity platform harnesses the power of data and AI to protect your organization now and into the future.