Locky Ransomware Returns with New IKARUSdilapidated Phishing Campaign

Over 62,000 phishing emails delivered the new threat in the first three days of the campaign alone.

Research by Damon McCoy, Assistant Professor of Computer Science and Engineering

Comodo researchers recently uncovered a new ransomware campaign that launched on August 9, targeting tens of thousands of victims with a simple email delivering just an attachment and no text.

The attachment is a zip file with the name "E 2017-08-09 (xxx).xxx," with the number in parentheses and the file extension varying with each email.

When executed, the attachment downloads a new Locky ransomware variant called IKARUSdilapidated.

