App Review CryptoLocker Ransomware - Demonstration of attack

It is advised to take all reviews with a grain of salt. In extreme cases some reviews use dramatization for entertainment purposes.

DardiM

Level 26
Verified
Honorary Member
Top Poster
Malware Hunter
Well-known
May 14, 2016
1,597
Thanks for your video :)

- Antivirus scan for bda316616f19691c1cc65c3f3acc332f54cd2ab4c0eb0d670c0fc228640ff87c at 2016-11-12 00:08:07 UTC - VirusTotal
- https://www.hybrid-analysis.com/sam...ab4c0eb0d670c0fc228640ff87c?environmentId=100

This file is on the samples posted by @silversurfer (Malware Vault forum), see there for AV tests :) :
https://malwaretips.com/threads/11-11-2016-11.65387/

Remark :
"Demonstration of attack"
The aim of video reviews from @CyberSecurity GrujaRS with this sentence, is to show us from the beginning to the end the attack of some recent malware version and the ransom part, not to test any AV / Security tools :)
 
Last edited:

Dirk41

Level 17
Verified
Top Poster
Mar 17, 2016
797
Thanks for your video :)

- Antivirus scan for bda316616f19691c1cc65c3f3acc332f54cd2ab4c0eb0d670c0fc228640ff87c at 2016-11-12 00:08:07 UTC - VirusTotal
- https://www.hybrid-analysis.com/sam...ab4c0eb0d670c0fc228640ff87c?environmentId=100

This file is on the samples of Malware Vault forum, see there for AV tests :) :
https://malwaretips.com/threads/11-11-2016-11.65387/

Remark :
"Demonstration of attack"
The aim of video reviews from @CyberSecurity GrujaRS with this sentence, is to show us from the beginning to the end the attack of some recent malware version and the ransom part, not to test any AV / Security tools :)

How do you know which files the OP used ? :)
 

DardiM

Level 26
Verified
Honorary Member
Top Poster
Malware Hunter
Well-known
May 14, 2016
1,597
How do you know which files the OP used ? :)
See the video at 00:11, we can see the :

MD5: 881f86bf4bb4b9f0e993b2853a0a27cf

=> it is then easy to use the search tool on
or

On some other websites, the MD5 can't be used to find the file, so the SHA1 can be useful in this case :)

(Why not use the file name ? Because it can be different of the one you see on videos : we must use an identifying signature)
 
Last edited:

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top