Lizard Squad Ransomware Asks for Unusual Ransom Currency
The newest strain of ransomware discovered in the wild is called the Lizard Squad ransomware. The new variant does not seem to belong to any of the big ransomware families.
The ransomware acts like other variants - it encrypts files on the victim system and renders them useless. Once files are encrypted, they receive a new extension, made up of four randomly generated alphanumeric characters. This means that a file that was previously called "picture.jpg" will become something similar to "picture.jpg.hjd8:"
The ransomware affects document, media, archive and database file types.
The ransom note is deposited inside a file that uses Chinese characters, called "說明it.txt". The message in it is in both Chinese and English. Unlike almost every other recent ransomware clone that asks for payment in BTC, this one calls for ransom to be paid in Tether USDT.
The full ransom note goes as follows:
聯繫方式 ：woo090909 at mail2tor dot com
I'm from an international organization called: Lizard Squad
we are a hacker group
My name is: Mr. 09
I will use your computer as collateral for collection
Please pay: USDT-TRC20
Payment address: TRZRAM9KL5qv1BMrXxo876wetHfzT19sii
contact details : woo090909 at mail2tor dot com
Contact me after payment and I will unlock it for you
If you do not pay, your computer and files will be automatically destroyed,
If you really want a fix, feel free to pay the fee, contact me and I'll consider giving you a discount