BOOK THIS SPACE FOR AD
ARTICLE AD23. June 2021
This article has been indexed from Help Net Security
The use of virtual machines (VMs) to run the malicious payload is getting more popular with ransomware attackers, Symantec’s Threat Hunter Team claims. Ransomware deployed in virtual machines “During a recent investigation into an attempted ransomware attack, Symantec discovered that the attackers had installed a VirtualBox VM on some compromised computers. Unlike the previously documented RagnarLocker attacks, which involved Windows XP, the VM in this case appeared to be running Windows 7,” they shared. Dick … More →
The post Virtual machines hide ransomware until the encryption process is done appeared first on Help Net Security.