CommonRansom

First seen
2023-01-15 00:00:00
Malware type
ransomware
Profile updated
2026-07-07 13:43:00

Targeted industries: financial-services healthcare-and-pharmaceutical technology-and-telecommunications

Context

A new ransomware called CommonRansom was discovered that has a very bizarre request. In order to decrypt a computer after a payment is made, they require the victim to open up Remote Desktop Services on the affected computer and send them admin credentials in order to decrypt the victim's files.

Reports & references

  • bleepingcomputer.com — Commonransom Ransomware Demands Rdp Access To Decrypt Files (report)

External references