PyLocky
Aliases: Locky Locker
- First seen
- 2018-08-01 00:00:00
- Malware type
- ransomware
- Family
- Malware family
- Profile updated
- 2026-07-07 13:44:24
Context
PyLocky is a ransomware that tries to pass off as Locky in its ransom note. It is written in Python and packaged with PyInstaller.
Reports & references
- research.checkpoint.com — Graphology Of An Exploit Playbit (report)
- cyborgsecurity.com — Python Malware On The Rise (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Pylocky (report)
- sensorstechforum.com — Lockymap Files Virus Pylocky Ransomware Remove Restore Data (report)
- bleepingcomputer.com — Pylocky Decryptor Released By French Authorities (report)
- cert.ssi.gouv.fr — Certfr 2018 Ale 008 (report)
- cybermalveillance.gouv.fr — Outil Dechiffrement Rancongiciel Ransomware Pylocky V1 2 (report)
- Cisco Talos — Pylocky Unlocked Cisco Talos Releases (report)
- Trend Micro — A Closer Look At The Locky Poser Pylocky Ransomware (report)