FirstKill Ransomware
Cybersecurity researchers have uncovered a hurtful malware threat tracked under the name FirstKill Ransomware. Malware of this type is designed for the sole purpose of locking the data of its targets. Indeed, when activated, FirstKill will target various important file types and encrypt them using an uncrackable cryptographic algorithm. Restoration of the affected files is typically impossible without knowing the necessary decryption keys that the attackers possess.
Victims of this particular malware will notice that most of their files - documents, archives, databases, PDFs, photos, etc., now have '.FirstKill' added to their names as a new extension. To deliver the ransom note with the demands of the threat actors, the FirstKill Ransomware drops a file named 'CO_SIĘ_STAŁO.html' on the victims' devices. The threat also changes the current desktop background image of the system with a new one.
Typically cybercriminals instruct their victims to contact them via email or a chosen messaging client. In addition, the ransom payment also may be limited to a specific cryptocurrency, as this will make tracking and recovering the sent amount far more difficult. However, paying any amount of money to threat actors or even communicating with them should be avoided if possible. Otherwise, victims risk exposing themselves to even more security or privacy risks.