PrincessLocker – ransomware with not so royal encryption

PrincessLocker ransomware has appeared some time ago and has drawn out attention by using the same template of the site for a victim as Cerber did. In this article, we dig deeper and try to answer questions about its internal similarities with Cerber (… Continue reading PrincessLocker – ransomware with not so royal encryption

JSE File Downloads Zepto then Cerber 3 Ransomware

It’s like the Russian nesting doll of ransomware. We found this new ransomware delivery tactic particularly interesting and took a deeper look. Let’s start with some facts about a JSE File. A JSE File is an encoded JScript. The acronym stands for JScript Encoded File. This encoding can be done by the executable “screnc.exe” or […]

The post JSE File Downloads Zepto then Cerber 3 Ransomware appeared first on ThreatTrack Security Labs Blog.

Continue reading JSE File Downloads Zepto then Cerber 3 Ransomware

A Look at the Cerber Office 365 Ransomware

Reports of a Zero-day attack affecting numerous Office 365 users emerged late last month (hat tip to the researchers at Avanan), and the culprit was a new variant of the Cerber ransomware discovered earlier this year. As with the other Zero-day threats that have been popping-up like mushrooms of late, the main methods of infection […]

The post A Look at the Cerber Office 365 Ransomware appeared first on ThreatTrack Security Labs Blog.

Continue reading A Look at the Cerber Office 365 Ransomware

WeTransfer random name at your own domain has sent you a file malspam delivers cerber ransomware

An email with the subject of  name@victim domain.tld has sent you a file via WeTransfer pretending to come from WeTransfer <noreply@wetransfer.com> with a link to download a zip attachment  which downloads Cerber Ransomware. Luckily Cerber doesn’t mass malspam in the same way … Continue reading →

Source

Continue reading WeTransfer random name at your own domain has sent you a file malspam delivers cerber ransomware