BlackRouter

Aliases: BLACKHEART

Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 14:49:42

Targeted industries: financial-services healthcare-and-pharmaceutical technology-and-telecommunications

Context

BlackRouter is a ransomware family known for encrypting files on infected systems and demanding a ransom for decryption. It has been distributed primarily via phishing emails and drive-by-download attacks.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Blackrouter (report)
  • bleepingcomputer.com — Blackrouter Ransomware Promoted As A Raas By Iranian Developer (report)
  • Trend Micro — Legitimate Application Anydesk Bundled With New Ransomware Variant (report)

External references