Grupo Ransomware: rook
Perfil del grupo segun ransomware.anggipradana.com.
| Campo | Valor |
|---|---|
| Alias | |
| Pais | |
| Estado |
Descripcion
According to PCrisk, Rook is ransomware (an updated variant of Babuk) that prevents victims from accessing/opening files by encrypting them. It also modifies filenames and creates a text file/ransom note (HowToRestoreYourFiles.txt). Rook renames files by appending the .Rook extension. For example, it renames 1.jpg to 1.jpg.Rook, 2.jpg to 2.jpg.Rook.