MalwareHunterTeam discovered the new Locky extension being submitted to ID-Ransomware and then security researcher Derek Knight discovered a new campaign spewing out emails that pretend to be an order receipts. After installation of the attached ZIP files it was determined that Locky switched to the.zzzzzzz extension. At this time there is still no way to decrypt the Locky Ransomware. It should also be noted that there are also still reports of the.aesir variant currently being distributed as well.
Source: https://www.bleepingcomputer.com/news/security/locky-ransomware-putting-us-to-sleep-with-the-zzzzz-extension/