Threat Database Ransomware '.loptr File Extension' Ransomware

'.loptr File Extension' Ransomware

By GoldSparrow in Ransomware

The '.loptr File Extension' Ransomware is an encryption Trojan which is based on the Locky Ransomware. This iteration of the Locky Trojan is named after the '.loptr' string attached to the original file extension of encrypted data. For example, 'Rasberry crazy ant.pptx' is renamed to 'Rasberry crazy ant.pptx.loptr.' The '.loptr File Extension' Ransomware is classified as an adapted version of the top-tier Locky Ransomware. The Trojan features slight modifications to the encryption routine enough to bypass most AV scanners. Additionally, the authors of the threat included a new server configuration that makes the Trojan transmit data to site compromised recently and hidden pages.

The '.loptr File Extension' Ransomware appears to be adapted for attacks on regular PC users and the payload is delivered via spam emails and corrupted links primarily. The spam emails linked to the Locky campaign tend to refer to pending bills, promotions by service provides, personal messages on social media and fake news. You should avoid opening the spam fiddler on your email account and double-check the sender's address if you want to restrain your exposure to the '.loptr File Extension' Ransomware. Apart from an expanded distribution network, modified encryption routine, and server configuration—the '.loptr File Extension' Ransomware remains the old and familiar Locky Trojan underneath. As they say, better not fix that, which is not broken. In the case of the '.loptr File Extension' Ransomware, the Trojan is likely to corrupt files with the following extensions:

.7z; .rar; .m4a; .wma; .avi; .wmv; .csv; .d3dbsp; .sc2save; .sie; .sum; .ibank; .t13; .t12; .qdf; .gdb; .tax; .pkpass; .bc6; .bc7; .bkp; .qic; .bkf; .sidn; .sidd; .mddata; .itl; .itdb; .icxs; .hvpl; .hplg; .hkdb; .mdbackup; .syncdb; .gho; .cas; .svg; .map; .wmo; .itm; .sb; .fos; .mcgame; .vdf; .ztmp; .sis; .sid; .ncf; .menu; .layout; .dmp; .blob; .esm; .001; .vtf; .dazip; .fpk; .mlx; .kf; .iwd; .vpk; .tor; .psk; .rim; .w3x; .fsh; .ntl; .arch00; .lvl; .snx; .cfr; .ff; .vpp_pc; .lrf; .m2; .mcmeta; .vfs0; .mpqge; .kdb; .db0; .DayZProfile; .rofl; .hkx; .bar; .upk; .das; .iwi; .litemod; .asset; .forge; .ltx; .bsa; .apk; .re4; .sav; .lbf; .slm; .bik; .epk; .rgss3a; .pak; .big; .unity3d; .wotreplay; .xxx; .desc; .py; .m3u; .flv; .js; .css; .rb; .png; .jpeg; .txt; .p7c; .p7b; .p12; .pfx; .pem; .crt; .cer; .der; .x3f; .srw; .pef; .ptx; .r3d; .rw2; .rwl; .raw; .raf; .orf; .nrw; .mrwref; .mef; .erf; .kdc; .dcr; .cr2; .crw; .bay; .sr2; .srf; .arw; .3fr; .dng; .jpeg; .jpg; .cdr; .indd; .ai; .eps; .pdf; .pdd; .psd; .dbfv; .mdf; .wb2; .rtf; .wpd; .dxg; .xf; .dwg; .pst; .accdb; .mdb; .pptm; .pptx; .ppt; .xlk; .xlsb; .xlsm; .xlsx; .xls; .wps; .docm; .docx; .doc; .odb; .odc; .odm; .odp; .ods; .odt.

As stated above, the affected files include the '.loptr' string in their names, which should allow for an easy estimate of how much data was affected. PC security investigators warn that the '.loptr File Extension' Ransomware incorporates secure encryption algorithms, and it is virtually impossible to unlock access to enciphered data. Users should note that the best protection against threats like Locky and its countless variants is to be prepared. You may want to add a backup utility to your OS and make it export backup images to an external drive, which you disconnect from the machine manually. Experts advise the removal of the '.loptr File Extension' Ransomware to be performed with a reliable anti-malware instrument.

Trending

Most Viewed

Loading...