Threat Database Ransomware Apollolocker Ransomware

Apollolocker Ransomware

By GoldSparrow in Ransomware

The ApolloLocker Ransomware is an encryption ransomware Trojan that is used to extort computer users. The con artists will use ransomware like the ApolloLocker Ransomware to encrypt the victims' files, then stipulate a ransom payment in exchange for the decryption key and program that is necessary to restore the affected files. Computer users should take precautions against encryption ransomware Trojans like the ApolloLocker Ransomware; once the ApolloLocker Ransomware encrypts your files, they will no longer be recoverable without the decryption key, which these people hold in their possession.

The ApolloLocker Ransomware and Similar Threats

The ApolloLocker Ransomware's main attack consists of encrypting the victim's files with a strong encryption algorithm. After doing this, the ApolloLocker Ransomware drops a ransom note written in Turkish entirely. This makes it reasonable to assume that the ApolloLocker Ransomware's main targets are located in Turkey (although there is nothing preventing the ApolloLocker Ransomware from spreading beyond this country's borders). The files encrypted by the ApolloLocker Ransomware attack will have the file extension '.locked' added to the end of their names. In the ApolloLocker Ransomware infection, there are several files dropped on the victim's computer. These files are named 'DOSYALARI-KURTAR %num%.txtTrojan and 'DOSYALARI-KURTAR %num%.urlTrojan. In its ransom note, the ApolloLocker Ransomware demands a payment of 500 USD from the victim. Unlike other threats that give the computer users only a couple of days to pay before threatening to delete the files permanently, the ApolloLocker Ransomware sets a time limit of several weeks for the victim to pay the ransom. The full text of the ApolloLocker Ransomware ransom note (in the original Turkish) reads:

'Biglisayarynyzda, ad disklerde ve USB Belleklerde olan önemli dosyalarynyz : fotodraflar, videolar ve kitisel bilgileriniz ApolloLocker virüsü ile tifrelenmittir. Bizim Tifreleme çözme yazylymyny satyn âlmanyz dosyalarynyzy kurtarmak için tek yoldur.Aksi takdirde , tüm dosyalâry kaybedersiniz.
Eder dosyalarynyzy geri almak istiyorsanyz - Bizim tifreleme çözme yazylymyny satyn almanyz tek olan yoludur, internet'te çözüm bulmak için botuna zaman harcamayyn - tifreleme çözme yazylymy satyn alyn ve mutlu bir hayat yatamaya devam edin.
YAZILIM NASIL SATIN ALINIR
Yazvlvmv sitemizden satvn Alabilirsiniz.
1.xxxx://cryptolockerservice.com/index.php?id-***********&crypto=ApolloCrupto
Web sitemiz çalytmyyorsa Antivirüs tarafyndan kapatylmyt olabilir. Atadydaki adymlary yaparak sitemize girebilirsiniz
1. TOR Tarayycyyy bilgisarynyza yükleyin
2. TOR Tarayycyyy çalyttyryn ve bati atma için bekleyin.
3. Adres çubuduna site adresini yazyn
4. Web Sitemize Gidin.'

After the payment instructions, the ApolloLocker Ransomware also includes information about how to connect to its payment site on the Dark Web using TOR and carry out the payment.

The ApolloLocker Ransomware Has an Additional Feature Besides Encrypting Files

Apart from encrypting files, the ApolloLocker Ransomware is capable of collecting passwords from the infected Web browser. The malware researchers observing the ApolloLocker Ransomware noted that the ApolloLocker Ransomware could load shady content onto the affected computer, exploiting vulnerabilities in the Internet Explorer and other Web browsers. After exploiting these vulnerabilities, the ApolloLocker Ransomware may use various vulnerabilities to collect important information from the infected computer, including passwords stored on the infected computer's Web browser. Most encryption ransomware Trojans today seem to target English speakers. However, threats like the ApolloLocker Ransomware are specific geographically, and other ransomware Trojans targeting Turkish computer users have already been observed by PC security analysts. Take steps to remove the ApolloLocker Ransomware infection as soon as possible. A reliable and updated anti-malware application that can scan your computer and remove the ApolloLocker Ransomware infection as soon as possible is highly recommended. To ensure that your files are safe from these attacks, PC security analysts advise computer users to have file backups on safe storage places. Having file backups ensures that computer users can restore any encrypted data without having to restore it by paying the ransom fee that the people responsible for the ApolloLocker Ransomware demand.

Trending

Most Viewed

Loading...