Ransomware and Recent Variants

Discussion in 'malware problems & news' started by ronjor, Mar 31, 2016.

  1. mantra

    mantra Registered Member

    hi
    I guess we we need a good hips
     
  2. ronjor

    ronjor Global Moderator

    Cry Ransomware Uses UDP, Imgur, Google Maps

     
  3. wat0114

    wat0114 Registered Member

    Yet another good reason to set UAC to highest level:

    -https://blog.malwarebytes.com/threat-analysis/2016/03/cerber-ransomware-new-but-mature/
     
    Last edited: Sep 6, 2016
  4. ronjor

    ronjor Global Moderator

    The cost of ransomware attacks: $1 billion this year
     
  5. Minimalist

    Minimalist Registered Member

  6. Minimalist

    Minimalist Registered Member

  7. Minimalist

    Minimalist Registered Member

  8. ronjor

    ronjor Global Moderator

  9. Minimalist

    Minimalist Registered Member

  10. Minimalist

    Minimalist Registered Member

    Unlock92 Ransomware Is the Quiet Threat That Nobody Heard About
    http://news.softpedia.com/news/unlo...t-threat-that-nobody-heard-about-508742.shtml
     
  11. ronjor

    ronjor Global Moderator

  12. stapp

    stapp Global Moderator

  13. Minimalist

    Minimalist Registered Member

    Bitter Ransomware Operator Shuts Down Service and Deletes Decryption Master Key
    http://news.softpedia.com/news/bitt...nd-deletes-decryption-master-key-508796.shtml
     
  14. Victek

    Victek Registered Member

  15. ronjor

    ronjor Global Moderator

  16. Minimalist

    Minimalist Registered Member

  17. Minimalist

    Minimalist Registered Member

  18. Minimalist

    Minimalist Registered Member

    How Stampado Ransomware Analysis Led To Yara Improvements
    http://blog.trendmicro.com/trendlab...do-ransomware-analysis-led-yara-improvements/
     
  19. ronjor

    ronjor Global Moderator

    WildFire Ransomware Revived as "Hades Locker"
     
  20. Minimalist

    Minimalist Registered Member

  21. Minimalist

    Minimalist Registered Member

  22. ronjor

    ronjor Global Moderator

  23. ronjor

    ronjor Global Moderator

  24. itman

    itman Registered Member

  25. cruelsister

    cruelsister Registered Member

    In addition to js and wsf coded ransomware there has been an increasing number of hta Locky malware. These are totally independent of wscript but instead will use mshta and rundll32 to execute.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice