Apart from developing new ransomware strains, cryptovirological operators also improve on the features of existing scripts by introducing their new variants. For instance, the developer of Locky ransomware has introduced a number of variants since the development of the original.
Just before Christmas holidays, a group of ransomware removal experts identified a new cryptovirological strain that goes with the name Target777. According to preliminary investigations, it looks as if the newly discovered cryptovirological script is an extension of already existing DeFray ransomware. Ransomware removal experts have come to this conclusion after finding out that the extension used by Target777 ransomware for encrypted files is identical to that of Defray’s.
So, there are strong chances that Target777 ransomware also uses the combination of AES and RSA encryption modules to lock down files on the affected device. It is important to mention here that the combined encryption can’t be neutralized through traditional ransomware removal measures. In many cases, a data encrypted through the combination of RSA and AES modules couldn’t recover by any means. This highlights the importance of data backups for deterring ransomware attacks deploying combined encryption.
Ransom Amount is not Mentioned
The ransom note that appears on the desktop after the completion of encryption is a text file. The note is written as if it is being addressed to organizations instead of individual users. The attackers inform the affected users that their data has been locked down and it can’t be decrypted apart from the unique encryption key stored with the attackers. Target777 operators offer the free decryption of 50 KB file to prove that they have the legitimate decrypter.
Moreover, they also advise the affected users to get a Bitcoin Wallet for the payment of the ransom. Law enforcement agencies and cybersecurity experts strongly advise against making any contact with the ransomware operators. So, try to deal with any ransomware problem with the help of professionals.