• Cyber Security
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware File Recovery
    • Ransomware Types
  • Ransomware Services
    • Ransomware Removal
    • Ransomware File Recovery
  • News
  • Tutorials
  • Ransomware TV

Cryptovirological Discovery: Seed Locker Ransomware

March 1, 2019Simeon Georgiev

Ransomware operators are extremely persistent with their activity. Amid the increasing prevalence of cryptomining malware, they are trying to hold their grounds by releasing new strains every other day. Ransomware removal experts, therefore, stumble upon new cryptovirological strains quite often. In the latest such discovery, they have found an encrypting malware that goes with the name Seed Locker ransomware.

It Might be an Everbe Variant

Besides developing cryptovirological scripts from scratch, many times ransomware operators make upgrades to the existing ones and throw them in the cyberspace. Researchers are of the opinion that Seed Locker might also be a variant of an existing cryptovirological strain called Everbe ransomware. The similarities between the ransom notes of the two are the major reason why experts are considering Seed Locker an offshoot of Everbe.

Ransomware removal experts are still trying to find out the encryption module used in Seed Locker ransomware. If it’s the latest variant of Everbe, then there are strong chances that it will also be using the AES system.  Advanced Encryption Standard is the most popular encryption tool among the cryptovirological operators. Every second ransomware has AES encryption module in its foundation.

Ransom Amount Is Not Given

Seed Locker operators are using phishing emails to spread the infection. As the targeted user clicks on the attached executable file of the email, the cryptovirological payload starts unpacking on the device. As the encryption ends, the extension ‘seed’ appends with every encrypted file and a ransom note appears in every folder in a text file.

Seed Locker operators haven’t specified the extortion amount they are demanding for providing ransomware removal decrypter. They ask the affected users to correspond over the email provided in the note. Moreover, they offer the victims to send them up to three files to get their free decryption. Such offers are made to prove that the attackers own a legitimate decrypter that can unlock all the flies. In some cases, rookie operators don’t have the right decryption. They are just bluffing with the affected users to get the ransom.

It is important to mention here that the attackers haven’t use the word ‘encrypted’ in the note. They reassure the victims that their files are not damaged and lost and they can get them back after the payment of ransom.

Experienced ransomware removal experts have the expertise to come up with decryption of many AES-based lockdowns. So, it is better to go for a professional solution instead of resorting to the extortion payment if you are hit by Seed Locker ransomware.

Simeon Georgiev
https://www.linkedin.com/in/simeon--georgiev/
I am a Cyber Security Enthusiast from Bulgaria. I like to write about malware and ransomware and global cyber attacks. You can reach me on Twitter @sgeorgiev1995 or Email: [email protected]
Previous post Ryuk Ransomware: A Case of Mistaken Identity Next post Councilwoman Keith Awaits the Final Report on Akron

Related Articles

NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

January 27, 2018Simeon Georgiev
NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

Ransomware: 4 Types of the Latest Trend in Cybercrimes

February 1, 2018Simeon Georgiev
Ransomware: 4 Types of the Latest Trend in Cybercrimes

NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

February 1, 2018Simeon Georgiev
NonPetya Ransomware Caused Millions of Dollars Worth of Damage to Maersk

Latest on Ransomware TV

https://vimeo.com/399908876?loop=0

Recent Posts

  • How to protect your organization against ransomware reinfections
  • AuKill Helps Ransomware Operators Disable EDR and Security Tools
  • AI-ransomware is a real threat, just not a realistic one yet
  • Rorschach is the new speed king in the ransomware space
  • The Role of Supply Chain Breaches in Ransomware Attacks

Stay Protected

Subscribe to our mailing list to get the latest cyber security and ransomware removal articles!

Thank you for subscribing.

Something went wrong.

Navigation

  • Cyber Security
    • Ransomware File Recovery
    • Ransomware Prevention
    • Ransomware Removal
    • Ransomware Types
  • News
  • Tutorials

Ransomware Attacks (Last 6M)

0

Connect & Protect

Facebook
Google+
LinkedIn
YouTube
Vimeo

More

  • BECOME A CONTRIBUTOR

MonsterCloud Reviews

© 2020 MonsterCloud.com. All Rights Reserved.