Get a Pentest and security assessment of your IT network.

News

Snatch ransomware reboots Windows in Safe Mode to bypass anti-virus protection

New strain of the Snatch ransomware reboots PCs it has just infected into Safe Mode. Safe Mode is a method of booting up a Windows system deployed when trying to diagnose a problem and resolve software conflicts. The ransomware installs itself as a Windows service called SuperBackupMan. It installs a key to the Windows registry so it will start up during a Safe Mode boot. Researchers say they have found evidence of several related attacks around the world against organisations, all of which were later discovered to have one or more computers with RDP exposed to the internet.”]

Source: https://grahamcluley.com/snatch-ransomware-reboots-windows-in-safe-mode-to-bypass-anti-virus-protection/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Terrorism WEEKLY DIGESTTHREAT INTELLIGENCE FEED 23rd Jul 2nd

News

Attacker.NET : Server Management & Security, Website Malware Removal & Website Security