Erebus (Windows)

First seen
2017-06-10 00:00:00
Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:26:58

Targeted industries: government-and-public-sector financial-services

Targeted regions: country_code:kr

Context

Erebus is a ransomware strain that first gained attention in June 2017 after targeting systems in South Korea. It encrypts files on infected machines and demands a ransom payment in Bitcoin for the decryption key.

Reports & references

  • bleepingcomputer.com — Erebus Ransomware Utilizes A Uac Bypass And Request A 90 Ransom Payment (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Erebus (report)

External references