CloudSword Ransomware

Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:26:09

Context

It’s directed to English speaking users, therefore is able to infect worldwide. Uses the name “Window Update” to confuse its victims. Then imitates the window update process , while turning off the Window Startup Repair and changes the BootStatusPolicy using these commands: bcdedit.exe /set {default} recoveryenabled No bcdedit.exe /set {default} bootstatuspolicy ignoreallfailures

Reports & references

  • id-ransomware.blogspot.co.il — Cloudsword (report)
  • bestsecuritysearch.com — Cloudsword Ransomware Virus Removal Steps Protection Updates (report)
  • twitter.com — 822653335681593345 (report)

External references