App Review Locky Ransomware new adds the .aesir extension - Demonstration of attack

It is advised to take all reviews with a grain of salt. In extreme cases some reviews use dramatization for entertainment purposes.

Der.Reisende

Level 45
Honorary Member
Top Poster
Content Creator
Malware Hunter
Dec 27, 2014
3,423
Nice demonstration as always, thank you for sharing @CyberSecurity GrujaRS!
Already came across at least one today (thank you @Daniel Hidalgo for the nice pack of today:)).
Don't trust your AV too much, if it does not have a signature, and mechanics don't work out, you might be wasted. A**** Pro did not really recognize the threat (not a single warning), encryption is super fast.
P.S. Someone's really a fan of northern mythology, isn't (s)he?:p
 

dreyfus

New Member
Nov 21, 2016
1
Hi,
new here, searching for some help in a situation like this. Network folder all the files are .aesir.
What can I do?
 
Last edited:
M

MalwareBlockerYT

Thanks for the demonstration. I need to do a video on this but the last time I tried to execute Locky it didn't actually do anything... It changed from the .exe to svchost.exe but then didn't encrypt my files - it probably detected the VM.
 
  • Like
Reactions: Der.Reisende

GrujaRS

Level 5
Thread author
Verified
Well-known
Aug 7, 2016
228

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top