• Cyber Security
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware File Recovery
    • Ransomware Types
  • Ransomware Services
    • Ransomware Removal
    • Ransomware File Recovery
  • News
  • Tutorials
  • Ransomware TV

BARRACUDA Ransomware: A New Scarab Variant

August 24, 2018Simeon Georgiev

BARRACUDA ransomware is the latest offering from Scarab cryptovirological family. This ransomware strain has been discovered by security researchers in its fully developed phase i.e. it can run encryption on every file stored on the affected device. The locked down files gets appended with the extension ‘BARRACUDA’.

Amount of extortion money is not mentioned in the ransom note left by the operators on the affected device. However, they ask the victims to create a Bitcoin wallet. This implies they also want to get collect the ransom in the form of Bitcoin like the rest of ransomware operators.

Many times rooky ransomware operators fail to develop the decryption key for the encryption module used in the cryptovirological code. Therefore, they offer decryption of one locked file as a proof that they have the complete decrypter for the ransomware.  

BARRACUDA operators are using spam email campaigns to deliver the ransomware payload. This shows that an organized cybercrime group is behind the development of this ransomware since spam email campaigns are usually carried out through botnets, which are at the disposal of skilled cybercriminals only.

BARRACUDA Remains Invisible

BARRACUDA ransomware strain infiltrates into the registry editor of Windows OS to achieve invisibility. This means users only come to know about the presence of ransomware on their devices when encryption has already locked down the files. Researchers have also noted that BARRACUDA ransomware strain completes all backend operations before starting the encryption process.

All these protocols make the activity of this ransomware more deadly. For that reason, most of the security tools remain ineffective in detecting and preventing this ransomware’s activity. Only professional ransomware removal measures can help in disinfecting the infected device and getting its control back. Besides that, data backups will also come in handy in the aftermath of BARRACUDA ransomware activity.

 

Simeon Georgiev
https://www.linkedin.com/in/simeon--georgiev/
I am a Cyber Security Enthusiast from Bulgaria. I like to write about malware and ransomware and global cyber attacks. You can reach me on Twitter @sgeorgiev1995 or Email: [email protected]
Previous post Ransomware and Operating Systems Next post WannCrypto: Another WannaCry Imposter

Related Articles

A New Version of Scarab Ransomware is Targeting Corporations

February 20, 2018Simeon Georgiev

Is a Third-Party Security really something that I need?

March 3, 2018Simeon Georgiev
Is a Third-Party Security really something that I need?

Google Chrome 65 Releases with New APIs, 45 Security Fixes and Tab-Under Blocking

March 9, 2018Simeon Georgiev

Latest on Ransomware TV

https://vimeo.com/399908876?loop=0

Recent Posts

  • How to protect your organization against ransomware reinfections
  • AuKill Helps Ransomware Operators Disable EDR and Security Tools
  • AI-ransomware is a real threat, just not a realistic one yet
  • Rorschach is the new speed king in the ransomware space
  • The Role of Supply Chain Breaches in Ransomware Attacks

Stay Protected

Subscribe to our mailing list to get the latest cyber security and ransomware removal articles!

Thank you for subscribing.

Something went wrong.

Navigation

  • Cyber Security
    • Ransomware File Recovery
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware Types
  • News
  • Tutorials

Ransomware Attacks (Last 6M)

0

Connect & Protect

Facebook
Google+
LinkedIn
YouTube
Vimeo

More

  • BECOME A CONTRIBUTOR

MonsterCloud Reviews

© 2020 MonsterCloud.com. All Rights Reserved.