"AstraLocker Ransomware Shuts Down and Releases Decryptors"

The threat actor behind the AstraLocker ransomware claims they are ceasing operations and intend to transition to cryptojacking. The creator of the ransomware uploaded a ZIP archive containing AstraLocker decryptors to the VirusTotal malware detection service. After downloading the archive and testing one of the decryptors on files encrypted by a recent AstraLocker operation, Bleeping Computer was able to confirm that the decryptors are reliable and functional. However, other decryptors in the archive are likely designed to decrypt files encrypted in earlier campaigns. The developer did not explain why AstraLocker was shut down, but it was probably because of the sudden attention the operation received as a result of recent reports, which put it in the sights of law enforcement. Emsisoft, a software provider known for assisting ransomware victims with data decryption, is currently developing a universal decryptor for AstraLocker ransomware. This article continues to discuss the close down of the AstraLocker ransomware and the release of decryptors for it.

Bleeping Computer reports "AstraLocker Ransomware Shuts Down and Releases Decryptors"

 

Submitted by Anonymous on