Virtual machines hide ransomware until the encryption process is done

3 years ago 92
BOOK THIS SPACE FOR AD
ARTICLE AD

23. June 2021

This article has been indexed from Help Net Security

The use of virtual machines (VMs) to run the malicious payload is getting more popular with ransomware attackers, Symantec’s Threat Hunter Team claims. Ransomware deployed in virtual machines “During a recent investigation into an attempted ransomware attack, Symantec discovered that the attackers had installed a VirtualBox VM on some compromised computers. Unlike the previously documented RagnarLocker attacks, which involved Windows XP, the VM in this case appeared to be running Windows 7,” they shared. Dick … More

The post Virtual machines hide ransomware until the encryption process is done appeared first on Help Net Security.

Read the original article: Virtual machines hide ransomware until the encryption process is done

Read Entire Article