openPR Logo
Press release

eScan observes new variants of Locky Ransomware

08-23-2017 04:00 PM CET | IT, New Media & Software

Press release from: MicroWorld Technologies Inc.

eScan, Locky Ransomware, PBAE Technology

eScan, Locky Ransomware, PBAE Technology

To proliferate ransomware, cyber criminals often employ spam emails (infectious attachments), unofficial software download sources, trojans, and fake software updates. eScan’s research team has found out that there are two new variants of Locky Ransomware which add .diablo6 or .lukitus as file extensions to the encrypted files. For past few months Locky had gone dark but now in past couple of days, it has reared its ugly head. Locky was one of the most prominent of the Ransomware family and with the recent spam campaign, it has again proved that unless and until the creators of the dreaded Ransomware are not apprehended, it would keep on wreaking havoc. Spam emails might contain attachments (for example, JavaScript files, MS Office documents, etc.) designed to download/install malware.

Once infected it contacts its Command and Control (CnC) server and sends across the encryption keys which are important for successfully decrypting the files once the ransom has been paid. Unlike Wannacry Ransomware, there does not exist a Kill Switch Domain in Locky. WannaCry used the Eternal Blue exploit to propagate, it called back to a non-existent domain and this flaw was exploited by researchers to stop WannaCry dead in its track. However, with Locky this cannot be done.

Law Enforcement Agencies and Security Researchers may try to gain access to the CnC and provide the decryption keys as they have done this in the past. eScan PBAE detects and blocks these attempts by Locky Ransomware. (https://www.escanav.com/en/about-us/PBAE-technology.asp)

Locky File Extensions
Locky, after encrypting the files, changes the extension to one of the below mentioned:
• Diablo6
• Lukitus

Prevention Measures:
• Administrators should block all executable files from being transmitted via emails.
• Administrators should isolate the affected system in the Network.
• Administrator can restore the encrypted files from the backup or from system restore point (if enabled) for affected systems.
• Install and Configure eScan with all security modules active.
eScan Real Time Monitoring
eScan Proactive protection
eScan Firewall IDS/IPS Intrusion prevention

• Users shouldn’t enable macros in documents.
• Organizations should deploy and maintain a backup solution.
• Most important, Organizations should implement MailScan at the Gateway Level for mail servers, to contain the spread of suspicious attachments.

About eScan:

eScan is an ISO (27001) certified pure play enterprise security solution company with over 2 decades of expertise in developing IT security solutions. eScan today has a presence in 12 countries through its offices and subsidiaries. It also boasts of a robust channel partner network of more than 50, 000 partners spread across 190 countries worldwide. It is trusted by more than 6,500 enterprise and corporate users spread across various industry segments such as Government, BFSI, Education, Defense, Telecom, IT & ITeS, Infrastructure, Hospitality, and Healthcare worldwide.

It is powered by some of the latest and innovative technologies, such as Proactive Behavioral Analysis Engine (PBAE) Technology, MicroWorld Winsock Layer (MWL) Technology, Domain & IP Reputation Check (DIRC) Technology, Non-Intrusive Learning Pattern (NILP) Technology, and sophisticated Anti-Virus Heuristic Algorithms that not only provide protection from current threats, but also provides proactive protection against the ever-evolving cyber threats. eScan provides 24x7 free remote support facility to help its esteemed users to provide real-time solutions for security related issues.

For more information, visit www.escanav.com

39555 Orchard Hill Place, Suite 600
Novi, MI 48375

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release eScan observes new variants of Locky Ransomware here

News-ID: 682034 • Views:

More Releases from MicroWorld Technologies Inc.

MicroWorld to launch Nemasis at the 39th Gitex Technology week
Leading cyber security giant, Microworld have announced the unveiling of their new cyber security solution, Nemasis (VAPT) at the 39th edition of Gitex Technology week, which is to be held at the World Trade Center in Dubai from the 6th to the 10th of October 2019. MicroWorld along with its seniority team can be located at the SR F1 booth at the Sheik Rashid Hall. Nemasis is a vulnerability management
eScan delights its channel partners with a trip to Pattaya
eScan delights its channel partners with a trip to Pattaya
eScan, one of the leading anti-virus solution developers had launched an offer to reward its channel partners with 2 nights and 3 days trip to Pattaya. The offer was launched exclusively for Southern region and about 70 partners from the region had been to the destination. The 2 Nights/3 Days luxury outing to Pattaya was packed with tranquil sightseeing that included a visit to Coral Island that offers plenty of water
eScan products receive 100% clean certificate from Softpedia
eScan products receive 100% clean certificate from Softpedia
eScan’s Internet Security Suite (ISS) for Windows and eScan’s Anti-Virus (AV) have received the coveted 100% clean certificate from Softpedia among its peers. The tests were conducted on both products in the Softpedia labs in April 2018. The results showed that eScan’s ISS for Windows and eScan’s AV do not contain any form of malware, including but not limited to: spyware, viruses, trojans and backdoors. These products were tested thoroughly
eScan’s ISS for Windows achieves VB 100 Test Certificate
eScan’s ISS for Windows achieves VB 100 Test Certificate
eScan has successfully cleared Virus Bulletin’s VB100’s comparative review test for its eScan Internet Security Suite (ISS) for Windows. The test, in February 2018, was conducted on Windows 7 and 10 Professional. eScan Internet Security Suite proved its capability of providing advanced protection against malware listed by WildList Organization with the RAP score of 92.1% and Zero False Positives. Virus Bulletin is a world-renowned independent testing and certification body, in

All 4 Releases


More Releases for Locky

Cloud IDS IPSMarket Growth, Key Futuristic Trends And Competitive Landscape 2018 …
Cloud IDS (Intrusion Detection System) and IPS (Intrusion Prevention System) are methodology used to escalate the security level of networks, by scanning and reviewing packets for suspicious data and monitoring traffic. Download PDF Brochure Of This Research Report @ https://www.coherentmarketinsights.com/insight/request-pdf/1140 Major players operating in the global cloud IDS IPS market include CA Technologies, Solarwinds, Dynatrace, Idera, Sevone, Cloudyn, Zenoss, Datadog, Kaseya, Logicmonitor, and Opsview. according to the Internet Crime Complaint Center (IC3), in
Cloud IDS IPS Market Size, Growth Insights and Key Players CA Technologies, Sola …
Cloud IDS (Intrusion Detection System) and IPS (Intrusion Prevention System) are methodology used to escalate the security level of networks, by scanning and reviewing packets for suspicious data and monitoring traffic. Get PDF of Sample Copy Illustration: https://www.coherentmarketinsights.com/insight/request-sample/1140 Growing probability of cyber-attacks, including ransomware, advanced persistent threats (APTs), distributed denial of service (DDoS), malicious insider, and zero day threats, is a major factor expected to drive growth of the global cloud IDS
Ransomware Protection Market Report 2018 Is Set For Global Lead With Immense Dev …
Ransomware protection refers to security against malicious cryptovirology software that prevents users from accessing their data or threaten to make their private information public unless a ransom is paid for the same. Utilization of cryptocurrencies such as Bitcoin and Ukash makes the tracking down of transaction extremely difficult, providing another hurdle for the anti-cybercriminal bodies to take appropriate actions against them. Download PDF Brochure Of This Research Report @ https://www.coherentmarketinsights.com/insight/request-pdf/1060 Growing incidence
Ransomware Protection Market Driven By Microsoft, Sophos, Trend Micro Incorporat …
Coherent Market Insights has announced the addition of the “Ransomware Protection Market Size Status and Forecast 2026”. It elucidates potential revenue opportunity across different segments and explains attractive investment proposition matrix for this market This report studies the global Ransomware Protection market, analyzes and researches the Ransomware Protection development status and forecast in North America, Europe, Asia Pacific, Latin America and Rest of the World. This report focuses on the top
Cloud IDS IPS Market Outlook 2026 Leading Key Players : CA Technologies, Solarwi …
Cloud IDS (Intrusion Detection System) and IPS (Intrusion Prevention System) are methodology used to escalate the security level of networks, by scanning and reviewing packets for suspicious data and monitoring traffic. Download PDF To explore detail study @ https://www.coherentmarketinsights.com/insight/request-pdf/1140 Growing probability of cyber-attacks, including ransomware, advanced persistent threats (APTs), distributed denial of service (DDoS), malicious insider, and zero day threats, is a major factor expected to drive growth of the global cloud
Ransomware Protection Market, By Solution, Services, Application, Deployment, Or …
ansomware protection refers to security against malicious cryptovirology software that prevents users from accessing their data or threaten to make their private information public unless a ransom is paid for the same. Utilization of cryptocurrencies such as Bitcoin and Ukash makes the tracking down of transaction extremely difficult, providing another hurdle for the anti-cybercriminal bodies to take appropriate actions against them. Growing incidence of phishing attacks across the globe fueling growth