JapanLocker Ransomware

Aliases: SHC Ransomware, SHCLocker, SyNcryption

First seen
2017-05-01 00:00:00
Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:31:59

Context

This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hacker spread the virus using email spam, fake updates, and harmful attachments. All your files are compromised including music, MS Office, Open Office, pictures, videos, shared online files etc.. Base64 encoding, ROT13, and top-bottom swapping

Reports & references

  • id-ransomware.blogspot.co.il — Japanlocker Ransomware (report)
  • cyber.nj.gov — Japanlocker (report)
  • github.com — Schransomwarev1 Decryptor (report)
  • blog.fortinet.com — Japanlocker An Excavation To Its Indonesian Roots (report)

External references