Ransomware kokolock adds mailto extension

A brief safety tip. A Ransomware, I call it kokolock, appeared, which uses personal information of the recipient to change file names. Here is a short intro, what I know so far.


Advertising

Currently I don't know too much about it. On VirusTotal, 51 out of 69 scanners currently detect this malware as Trojan / Ransomware. Microsoft has known this malware since May in Defender as Trojan:Win32/Wacatac.A!ml. Here the info on Twitter, which has some more details in the screenshots. 


Advertising

This entry was posted in Security and tagged . Bookmark the permalink.

Leave a Reply

Your email address will not be published. Required fields are marked *

Note: Please note the rules for commenting on the blog (first comments and linked posts end up in moderation, I release them every few hours, I rigorously delete SEO posts/SPAM).