New variants of Locky are being released at a rapid rate lately. Yesterday, we had a new variant that appends the .SH*T extension to encrypted files and a new one was released that now uses the .THOR extension. This version is currently being distributed via SPAM and further details can be found in the article.
Today we have a deal on a cool ultra-mini Linux-based computer and docking station that can be expanded to perform a variety of functions. With a microSD port and USB port, you can expand this device to become a Bitcoin mining farm, a cheap network attached storage device, or even a media server.
To further show how ransomware is such a pile of crap, a new version of Locky has been released that appends the .shit extension on encrypted files. Like previous variants, this ransomware is installed using a DLL that is executed by Rundll32.exe. Once executed, it will encrypt targeted file types and append the .shit extension to th
Criminals love to to prey on people based on current news topics and there are few topics right now that are bigger than the 2016 United States presidential election. This can be seen in a new malware called CIA Election AntiCheat Control - 2016. that tries to scam people to send $50 or their vote won't count.
Lots of smaller ransomware infections released with no big updates from the larger players. Of particular note is a new program by the Cisco Talos Group that prevents the Master Boot Record from being modified by ransomware.