Author Topic: New SamSam Variant Requires Special Password Before Infection  (Read 180 times)

Offline Antus67

  • Global Moderator
  • Hero Member
  • *****
  • Posts: 3279
    • View Profile
By Catalin Cimpanu

New versions of the SamSam ransomware will not execute unless the person running the malware's payload enters a special password via the command-line.

This is a new protection mechanism added by the SamSam crew in a recent SamSam version analyzed and detailed by Malwarebytes, Sophos, and Crowdstrike researchers.

Previous versions did not feature this mechanism, meaning anyone who found a SamSam binary could have infected his computer by double-clicking and running the file.

full article here:
Trojan Remover