Thursday, March 9, 2017

Evolution of Ransomware: Part II

  • Winlocker

This variant of ransomware also locks your computer, but it displays a more intimidating ransom message which appears to be from your local law enforcement agency. Unlike SMS ransomware, this particular kind instructs you to pay through an online payment system such as Ukash, Paysafecard, or Moneypak.
Image shows:  The lock screen indicates that the FBI has locked down the user’s computer for committing some sort of cybercrime. The lock screen also includes instructions on how the user can pay for the fine via an online payment service. This type of malware is more commonly known as the “FBI Virus” or “Moneypak Virus”. Police ransomware, porno blocker ransomware were other locker ransomware.

No comments:

RomCom’s Deliciously Simple Anti-Sandbox Trick

Not every evasion technique needs to be fancy. Some are so simple they’re almost… elegant. That’s the case with the Russian RomCom group , ...