Saturday, January 16, 04:57
Home security To PXJ Ransomware ΄ ³ ³ ¬ ± ΅ »» »» »» »» »΅» · Ξ · · ΅ ΅ ΅ · Ώ Ώ Ώ Ώ Ώ ΅ ΅ ΅ ΅

To PXJ Ransomware ΄ ³ ³ ¬ ± ΅ »» »» »» »» »΅» · Ξ · · ΅ ΅ ΅ · Ώ Ώ Ώ Ώ Ώ ΅ ΅ ΅ ΅

A new strain ransomware, named Pxj, which encrypts archives of users, recently discovered by researchers security. The encrypted files have the extension ".pxj"

The new ransomware strain was discovered by its X-Force Incident Response team IBM and malware is known as "XVFXGW".

PXJ Ransomware

The malware that was discovered appears to be new, since it has no links to any other known ransomware family.

Cybercriminals are using an information pack open source called UPX, which is known for supporting multiple file formats.

The exact method of distributing ransomware remains unknown, but it is mainly done via emails. Upon entering the victim's system, he checks the Recycle Bin and empties it.

It then corrupts the backups, disables the Windows Error Recovery service, and then executes commands to destroy the user's ability to recover data its after encryption.

Once these services are disabled it starts the encryption process using AES and RSA algorithms.

Ransomware

The ransomware encrypts files such as photos and images, databases, documents, videos and other files on the device.

Once the encryption is complete, a "PXJ" extension is added and downloads a file named "LOOK.txt" containing the note requesting ransom from the victim.

Infected users can contact them invaders via email only and are asked to pay a bitcoin ransom to get their files back.

Also, the attacker asks the victims to pay the ransom immediately, otherwise the amount will double after three days and the decryption key will be destroyed.

Investigators they noticed also the existence of a file named "Res.AAABANIx93RdufO4", containing old and new samples of ransomware, which, as the victim's note notes, "should not delete this file, which leads to the conclusion that this file can be used in the decryption process. ”

The use of ransomware has turned into a highly profitable malware business around the world, which is constantly evolving and generating millions of dollars to its creators.

LEAVE ANSWER

Please enter your comment!
Please enter your name here

Absent Mia
Absent Miahttps://www.secnews.gr
Being your self, in a world that constantly tries to change you, is your greatest achievement

LIVE NEWS

Android: How to see which apps have access to your site

It's no secret that smartphone apps have access to many permissions - if you let them. It is important to make sure ...

Canon lets you take pictures from space

Instead of releasing new cameras for CES 2021, Canon is doing something different: It lets you take pictures from space ....

Wikipedia vs Big tech: Who fights misinformation?

As Election Day turned into US Election Week, Facebook, Twitter and YouTube were trying to prevent ...
00:02:36

Tesla: It is called to recall cars due to problematic screens

The touch screen in some Tesla cars seems to have a problem, which could ...

Ransomware is responsible for half of all data breaches in hospitals

Almost half of the data breaches committed in hospitals and the wider healthcare sector are due to ransomware attacks, ...

Astronomers have just found the oldest oversized black hole

A quasar was discovered in a dark corner of space - over 13,03 billion light-years away - and contains a ...

What are the best and most affordable 5G phones for 2021

The market will soon be flooded with mid-range 5G devices. Everything that happens will be really exciting: you will be able to ...

Verified Twitter accounts in a cryptocurrency scam with the name of Elon Musk violated!

Lately, hackers have been violating verified Twitter accounts in a cryptocurrency giveaway scam, in which the name of the CEO is used ...

Classiscam: Fraudsters "fake" brands and deceive users of European markets!

Dozens of criminal gangs publish fake ads in popular online markets, to attract unsuspecting users to "fraudulent" commercial sites or phishing ...

iOS 14.4: Displays a notification for repairs with non-genuine cameras

Starting with the iPhone 11, Apple has added a notification to iOS that tells the user when the device has a ...