Threat Database Ransomware Again Ransomware

Again Ransomware

Cybersecurity researchers warn that a new Babuk Ransomware variant can be used by cybercriminals to lock the data of their victims. The malware threat is being tracked as the Again Ransomware and the fact that it is another variant of the Babuk Ransomware family has not diminished its capacity to cause damage. Once activated onto a breached system, the threat will look for any file from the targeted file types and encrypt it with a strong cryptographic algorithm. As a result, victims will be unable to access most of their documents, PDFs, archives, databases and more. Usually, it is impossible to restore the affected files without having the required decryption keys that the hackers possess.

As part of its actions, the malware also will mark all encrypted files by appending '.again' to their original names. In addition, a text file named 'How To Restore Your Files.txt' will be dropped to the infected device. Inside the file, victims will find a ransom note with instructions from the cybercriminals. However, the operators of the Again Ransomware leave only a single sentence that directs the affected users to visit a dedicated website hosted on the Onion network. The entire message found in the text file is:

'x
To contact visit website hxxp://alredyebp2dqdcsde3zyekfx7dpz65wdh7ddhiaslwmauqvj7wsyenad.onion, your chat token:'

Related Posts

Trending

Most Viewed

Loading...