• Cyber Security
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware File Recovery
    • Ransomware Types
  • Ransomware Services
    • Ransomware Removal
    • Ransomware File Recovery
  • News
  • Tutorials
  • Ransomware TV

HiddenBeer Ransomware

November 3, 2018Simeon Georgiev

As mentioned many times before, cryptovirological operators are unrelentingly working on developing new strains and improving the old ones. This is the reason why cyber malware hunters discover new ransomware strain nearly every day. In the latest batch of cryptovirological discovery, cybersecurity researchers have discovered a new strain based on the first open source ransomware Trojan HiddenTear. Because of this association, the operator of the strain is calling it HiddenBeer. The ransomware uses the Advanced Encryption Algorithm to set off instant encryption activity on the affected device, which makes it nearly impossible to commence ransomware removal activity in the midst. After the conclusion of the encryption, a ransom note appears on the desktop and the affected files get appended by the extension ‘beer’.

Unique ransom note title

It is important to mention here that the tile of the ransom note is different from what we are used to see. The title actually has two parts. The first part consists of the strings of words ‘Files’ and ‘Help’ in this order. The second part of the file is comprised of the affected device’s name. However, the unique title doesn’t mean the operators have used any complex file format for the note. Like most of them, HiddenBeer’s ransom note is also a text file.

As per the ransom note, the operators of HiddenBeer are asking for $100 in Bitcoin to provide the key for ransomware removal. Like many ransomware operators, HiddenBeer handlers don’t threaten the affected users with permanent loss of encrypted data, but they are also not providing free ransomware removal for a couple of encrypted files to prove their authenticity.

Whether or not the operators possess an authentic decrypter, it is always advised not to engage with them for ransomware removal. Maintain data backups and rely on professional expertise in case you become a victim of cryptovirological activity.

Simeon Georgiev
https://www.linkedin.com/in/simeon--georgiev/
I am a Cyber Security Enthusiast from Bulgaria. I like to write about malware and ransomware and global cyber attacks. You can reach me on Twitter @sgeorgiev1995 or Email: [email protected]
Previous post SOLO ransomware – A Cryptovirological discovery Next post Did Internet Solutions Get Hit By a Ransomware?

Related Articles

NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

January 27, 2018Simeon Georgiev
NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

Ransomware: 4 Types of the Latest Trend in Cybercrimes

February 1, 2018Simeon Georgiev
Ransomware: 4 Types of the Latest Trend in Cybercrimes

NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

February 1, 2018Simeon Georgiev
NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

Latest on Ransomware TV

https://vimeo.com/399908876?loop=0

Recent Posts

  • How to protect your organization against ransomware reinfections
  • AuKill Helps Ransomware Operators Disable EDR and Security Tools
  • AI-ransomware is a real threat, just not a realistic one yet
  • Rorschach is the new speed king in the ransomware space
  • The Role of Supply Chain Breaches in Ransomware Attacks

Stay Protected

Subscribe to our mailing list to get the latest cyber security and ransomware removal articles!

Thank you for subscribing.

Something went wrong.

Navigation

  • Cyber Security
    • Ransomware File Recovery
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware Types
  • News
  • Tutorials

Ransomware Attacks (Last 6M)

0

Connect & Protect

Facebook
Google+
LinkedIn
YouTube
Vimeo

More

  • BECOME A CONTRIBUTOR

MonsterCloud Reviews

© 2020 MonsterCloud.com. All Rights Reserved.