Duralock Ransomware Ramps Up Ransom Within Three Days

ransomware

Duralock is a type of ransomware that belongs to the MedusaLocker ransomware family. Duralock encrypts files and appends a ".duralock05" extension to their names. Consequently, an original file named "1.jpg" would appear as "1.jpg.duralock05," and so forth. It's important to note that the number in the extension may vary depending on the variant of the ransomware. Subsequently, a ransom note titled "HOW_TO_BACK_FILES.html" is generated.

The message conveyed by Duralock indicates that this ransomware specifically targets companies rather than individual users. It notifies the victim about the encryption of their data and asserts that confidential or personal information has been pilfered from the company's network.

The victim is explicitly cautioned against altering the names or contents of the encrypted files or attempting to use third-party recovery software, as such actions may render the files unrecoverable.

The ransom note includes demands for payment in exchange for decryption, and if the victim declines, the exfiltrated data will be either leaked or sold. Before making the payment, the decryption capability can be tested by sending the attackers up to three unimportant files. Failure to contact the cybercriminals within 72 hours will result in an escalation of the ransom amount.

Duralock Ransom Note in Full

The complete text of the Duralock ransom note reads as follows:

YOUR PERSONAL ID:

YOUR COMPANY NETWORK HAS BEEN PENETRATED
All your important files have been encrypted!

Your files are safe! Only modified. (RSA+AES)

ANY ATTEMPT TO RESTORE YOUR FILES WITH THIRD-PARTY SOFTWARE
WILL PERMANENTLY CORRUPT IT.
DO NOT MODIFY ENCRYPTED FILES.
DO NOT RENAME ENCRYPTED FILES.

No software available on internet can help you. We are the only ones able to
solve your problem.

We gathered highly confidential/personal data. These data are currently stored on
a private server. This server will be immediately destroyed after your payment.
If you decide to not pay, we will release your data to public or re-seller.
So you can expect your data to be publicly available in the near future..

We only seek money and our goal is not to damage your reputation or prevent
your business from running.

You will can send us 2-3 non-important files and we will decrypt it for free
to prove we are able to give your files back.

Contact us for price and get decryption software.

email:
assistant01@backup.capital
assistant01@decodezone.net

To contact us, create a new free email account on the site: protonmail.com
IF YOU DON'T CONTACT US WITHIN 72 HOURS, PRICE WILL BE HIGHER.

How Can You Protect Your Data Against Ransomware?

Protecting your data against ransomware is crucial in today's digital landscape. Here are some essential steps and best practices to help safeguard your data from ransomware attacks:

Regular Backups:
Regularly back up your important data and files to an external or offline storage device. Automated and scheduled backups are recommended.
Ensure that your backup solution is reliable, and test the restoration process periodically to confirm its effectiveness.

Keep Software Updated:
Regularly update your operating system, software, and applications to patch vulnerabilities that attackers may exploit.
Enable automatic updates whenever possible to ensure timely security patches.

Use Antivirus and Anti-Malware Software:
Install reputable antivirus and anti-malware software to detect and block malicious programs, including ransomware.
Keep the security software up to date and perform regular scans of your system.

Employee Training and Awareness:
Educate employees about phishing emails, suspicious links, and the importance of verifying the source before clicking on any links or downloading attachments.
Conduct regular cybersecurity training sessions to keep employees informed about the latest threats and best practices.

Network Segmentation:
Implement network segmentation to limit the spread of ransomware in case one part of the network gets infected. This can help contain the impact of an attack.

March 7, 2024
Loading...

Cyclonis Backup Details & Terms

The Free Basic Cyclonis Backup plan gives you 2 GB of cloud storage space with full functionality! No credit card required. Need more storage space? Purchase a larger Cyclonis Backup plan today! To learn more about our policies and pricing, see Terms of Service, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.

Cyclonis Password Manager Details & Terms

FREE Trial: 30-Day One-Time Offer! No credit card required for Free Trial. Full functionality for the length of the Free Trial. (Full functionality after Free Trial requires subscription purchase.) To learn more about our policies and pricing, see EULA, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.