DARKYLOCK

DARKYLOCKdarkylock

Description

Darky Lock is a commodity-style ransomware strain first identified in July 2022, derived from publicly available Babuk source code. Victim systems undergo file encryption with an added “.darky” extension, and a “Restore-My-Files.txt” ransom note is placed in all impacted locations. The malware attempts to disable backup mechanisms, including shadow copies and specific applications. Its distribution leverages phishing and trojanized installers, complemented by payloads dropped via frameworks like Empire, Metasploit, and Cobalt Strike.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
DarkLocker
Software
dataf locker
Software
DarkoderCryptor
Software
Dark Power
Software
LockLock
Software
CryptoDark
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.