TrumpLocker Ransomware

First seen
2017-02-01 00:00:00
Malware type
ransomware
Family
Malware family
Profile updated
2026-07-07 13:24:55

Context

This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hacker spread the virus using email spam, fake updates, and harmful attachments. All your files are compromised including music, MS Office, Open Office, pictures, videos, shared online files etc.. This is the old VenusLocker in disquise .To delete shadow files use the following commend: C:\Windows\system32\wbem\wmic.exe shadowcopy delete&exit https://2.bp.blogspot.com/-8qIiBHnE9yU/WK1mZn3LgwI/AAAAAAAAD-M/ZKl7_Iwr1agYtlVO3HXaUrwitcowp5_NQCLcB/s1600/lock.jpg

Reports & references

  • bleepingcomputer.com — New Trump Locker Ransomware Is A Fraud Just Venuslocker In Disguise (report)
  • id-ransomware.blogspot.co.il — Trumplocker (report)
  • bleepingcomputer.com — The Week In Ransomware February 24Th 2017 Trump Locker Macos Rw And Cryptomix (report)

External references