SYMBOLCOMMON_NAMEaka. SYNONYMS
win.yarraq (Back to overview)

Yarraq


Yarraq is a ransomware that encrypts files by using asymmetric keys and adding '.yarraq' as extension to the end of filenames. At the time of writing the attacker asks for $2000 ransom in order to provide a decryptor, to enable victims to restore their original files back. To communicate with the attacker the email: cyborgyarraq@protonmail.ch is provided.

References
2019-12-27Twitter (@GrujaRS)GrujaRS
@online{grujars:20191227:yarraq:bdde865, author = {GrujaRS}, title = {{Tweet on Yarraq Ransomware}}, date = {2019-12-27}, organization = {Twitter (@GrujaRS)}, url = {https://twitter.com/GrujaRS/status/1210541690349662209}, language = {English}, urldate = {2020-01-13} } Tweet on Yarraq Ransomware
Yarraq
2019-12-27YoroiYoroi
@online{yoroi:20191227:analysis:51fe39c, author = {Yoroi}, title = {{Analysis Run}}, date = {2019-12-27}, organization = {Yoroi}, url = {https://yomi.yoroi.company/report/5e1d7b06c21640608183de58/5e1d7b09d1cc4993da62f261/overview}, language = {English}, urldate = {2020-01-14} } Analysis Run
Yarraq

There is no Yara-Signature yet.