TrumpLocker Ransomware
- First seen
- 2017-02-01 00:00:00
- Malware type
- ransomware
- Family
- Malware family
- Profile updated
- 2026-07-07 13:24:55
Context
This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hacker spread the virus using email spam, fake updates, and harmful attachments. All your files are compromised including music, MS Office, Open Office, pictures, videos, shared online files etc.. This is the old VenusLocker in disquise .To delete shadow files use the following commend: C:\Windows\system32\wbem\wmic.exe shadowcopy delete&exit https://2.bp.blogspot.com/-8qIiBHnE9yU/WK1mZn3LgwI/AAAAAAAAD-M/ZKl7_Iwr1agYtlVO3HXaUrwitcowp5_NQCLcB/s1600/lock.jpg
Reports & references
- bleepingcomputer.com — New Trump Locker Ransomware Is A Fraud Just Venuslocker In Disguise (report)
- id-ransomware.blogspot.co.il — Trumplocker (report)
- bleepingcomputer.com — The Week In Ransomware February 24Th 2017 Trump Locker Macos Rw And Cryptomix (report)