Locky
Description
Locky is a high profile ransomware family that first appeared in early 2016 and was observed being active until end of 2017. It encrypts files on the victim system and asks for ransom in order to have back original files. In its first version it added a .locky extension to the encrypted files, and in recent versions it added the .lukitus extension. The ransom amount is defined in BTC and depends on the actor.
Names
Name |
---|
Locky |
Category
Malware
Type
- Ransomware
Information
- https://threatvector.cylance.com/en_us/home/threat-spotlight-locky-ransomware.html
- https://blog.malwarebytes.com/threat-analysis/2017/01/locky-bart-ransomware-and-backend-server-analysis/
- http://blog.talosintelligence.com/2017/06/necurs-locky-campaign.html
- https://www.bleepingcomputer.com/news/security/locky-ransomware-returns-but-targets-only-windows-xp-and-vista/
- https://blog.malwarebytes.com/threat-analysis/2016/03/look-into-locky/
- https://en.wikipedia.org/wiki/Locky
Malpedia
Alienvault Otx
Other Information
Uuid
5142b595-a174-46d6-984f-838a926e3799
Last Card Change
2020-05-14