"Fake" Windows 10 Update Installation "Cyborg" ransomware

The latest of Windows 2019 Nian 11 Yue 10 update has been launched for users. Meanwhile, some ill-intentioned behavior have emerged.

If you receive an email claiming from Microsoft, and require so-called key to install the update, please delete it immediately. It is reported that, SpiderLabs  security researchers have discovered a new ransomware activity. In this activity, there is a problem of fake Windows Update will be sent to junk mail as an attachment.

The researchers noted that such e-mail usually contains the subject line "Critical Microsoft Windows Update!" Or "immediately install the latest Microsoft Windows Update!".

After opening the e-mail, users can find the text of a line and update files fake. Although it is an executable file, but the extension .jpg.

Now, attached executable file also has been eliminated from a GitHub account (called misterbtc2020) to download the executable file named bitcoingenerator.exe of another. The second executable file that contains the payload Cyborg Ransomware, which load is further encrypted files on the victim computer and left a ransom recorded on the desktop.

To unlock the system files, software requirements cyborg extortion victims to send $ 500 worth of bitcoin wallet to the address mentioned in the text file.

SpiderLabs The researchers also found that VirusTotal database 3 Cyborg ransomware samples already exists. It warned that there is a anyone can use it to create and disseminate extortion software Cyborg Ransomware Builder.

We recommend that all Windows users not to open any such e-mail, but only to download the latest updates through the built-in Windows Update tool.

Reference News: https://fossbytes.com/fake-windows-10-update-installs-cyborg-ransomware/

Guess you like

Origin www.oschina.net/news/111494/fake-windows-10-cyborg-ransomware