The First Major Update of Cerber 4 Ransomware Has Surfaced

Cerber 4.1.0 is already here!  In this blog we will share information about this updated....  Cerber is a classic ransomware tool that encrypts victims’ files and then demands... (hopefully) having their original unencrypted files restored. Cerber marks encrypted files with a specific... extension. In previous versions (Cerber 2 and 3), encrypted files were marked with .cerber2 and..., and the format remains the same. Cerber also changes the wallpaper of infected machine to notify

Cerber 5.0.1 Arrives with New Multithreading Method

Introduction A new update of Cerber Ransomware, Cerber 5.0.1, has just arrived, appearing... shortly after Cerber 5.0.0. had been released. Cerber 5.0.1 handles multithreading differently when it... new version are described in the following sections.  New in Cerber 5.0.1 After the... encryption stage, the new Cerber 5.0.1 sample modifies the wallpaper and drops the instruction files to... changed to “_README_.hta.” Figure-1. Cerber 5.0.1 wallpaper and instruction

Cerber Ransomware Marks Its Presence in the Wild, Catches up with CryptoWall and Locky

family – Cerber – to be rapidly gaining prevalence in the wild. We gathered... threat, Cerber appeared to be the 3rd most prevalent ransomware for the first half of Q2 2016...: Figure 1. Distribution of ransomware hits from FortiGuard IPS telemetryWhat is Cerber...? Cerber is a new ransomware family that appeared in the middle of Q1 of this year. It is... infected a device. Upon execution, it encrypts files with the file extension “.cerber” and drops a

Research: A New Christmas Decorated Cerber Ransomware Has Arrived

Introduction A new unversioned Cerber has surfaced! It appears that the author(s) of Cerber is... wallpapers of the infected machines, and this new Cerber release no longer has an apparent version... number, which might make the tracking of the Cerber family more difficult than before. Another... text highlight is now red and the text is white, as shown in the figure below. Cerber versions 4 and... 5 used to have fluorescent green text highlighted in black. The wallpaper of Cerber 5.0.1 is also

A Closer Look at Sage 2.0 Ransomware along with Wise Mitigations

Cerber and Locky. In this article we will take a closer look at some notable characteristics of this... variants of the Sage/Cerber spam campaign Archived attachments contain either Javascript or... - Malicious documents that deliver Sage 2.0 and Cerber   Fig. 3 - Executed Powershell scripts... stand beside Locky or Cerber with respect to capabilities. However, it is still a ransom malware

FortiGuard Labs - Global Healthcare Threat Telemetry for Q4 2016

:// Coming in at 2nd place is Cerber, at around 5% of infections... detected. Cerber pretty much has the same ransomware characteristics as CryptoWall. More detailed... information about Cerber can be found in our FortiGuard blog’s research section at:  https...:// TorrentLocker, TeslaCrypt, and Locky are the other ransomware

PC Locker - A New Survey Locker in the Wild

ransomware has been so financially successful for their authors, such as Locky and Cerber, that many

Ransomware to hit $1B in 2016

notoriety, including CryptXXX, Locky, Fsociety Locker, Cerber and CryptoWall. This trend is unlikely slow

Outsmarting the Next Ransomware with Advanced Threat Protections

Cerber family of ransomware, which researchers found contains anti-sandbox and anti-detection technology