Videos

Check out our video libray AppCheck defending aginst newest ransomware

Magic Ransomware (.locked)

  • Distribution Method : Unknown
 
  • MD5 : 11363b4cad63fa5e5347e6de1429153e
 
  • Major Detection Name : Gen:Heur.Ransom.HiddenTears.1 (BitDefender), Ransom:MSIL/Ryzerlo.A (Microsoft)
 
  • Encrypted File Pattern : .locked
 
  • Malicious File Creation Location :
         - C:\%UserName%\Rand123
         - C:\%UserName%\Rand123\local.exe
 
  • Payment Instruction File : READ_IT.txt
 
  • Major Characteristics :
         - Offline Encryption
         - Hidden-Tear Open Source based Ransomware
         - The Italian users targeted
         - Changes desktop background (C:\%UserName%\ransom.jpg)

Go to List

Please upgrade your web browser for better website experience.

위로