Ransomware Campagins Flashcards
1
Q
1st installation
A
Crypto ransomware installs itself after boot up
2
Q
2nd contacting headquarters
A
Malware contacts a server belonging to an attacker or group
3
Q
3rd Handshake and Keys
A
The ransom client and server “handshake” and the server generates two cryptographic keys
4
Q
4 Encryption
A
The ransomware starts encrypting every file it finds with common file extensions.
5
Q
5 extortion
A
A screen displays giving a time limit to pay up before the criminals destroy the key to decrypt the files