Ransomware group deploys virtual machines to hide from antivirus software

dhruv2193

Bardzo aktywny
Dołączył
5 Styczeń 2017
Posty
119
Reakcje/Polubienia
217
In order to avoid detection by antivirus software, the operators of the RagnarLocker ransomware have begun installing Oracle's VirtualBox and running virtual machines on the computers they infect before deploying their ransomware.

The UK-based cybersecurity firm Sophos first spotted this new technique and it shows just how far cybercriminals are willing to go to ensure that their ransomware attacks are not detected by a victim's antivirus or other security software.
Source(full read)-
Zaloguj lub Zarejestruj się aby zobaczyć!
 
Do góry