Posts

Showing posts with the label #Windows

LOCKY RANSOMWARE

Image
LOCKY quite a derogatory name ! ImageSource LOCKY is a ransomware that scrambles and renames all your files with .locky extension, released in 2016 LOCKY is an email-worm and macro virus Trojan program similar to Cryptolocker. This ransomware is spread through email with an attached MS-Word document containing the malicious macros to thousands of computers. When the victim enables the macros setting in the word, the macros then save and run a binary file that downloads the actual encryption Trojan, which will encrypt all files to a unique 16-digit combination using the RSA-2048 and AES-1024 algorithms. **The files could be decrypted using a decrypter given by criminals costing 0.5 BitCoins.

KERANGER RANSOMWARE

Image
KERANGER the first wild  MacOS Ransomware ! KeRanger also known by OSX.KeRanger.A is known as the first CryptoRansomware Trojan effectively targeting Apple computers. Discovered on March 4, 2016, has affected more than 7,000 Mac users. KeRanger is remotely executed on the victim's computer from a flaw in transmission of Bit Torrent client. The only way this malware could invade the victim's computer was by using a valid developer signature issued by Apple, that allowed it to bypass Apple's built-in OS X’s security feature designed to block software’s from untrusted sources. **The malware display’s a ransom message, demanding the victim to pay 1 BitCoin (~ $408)