Locky Ransomware: Cert-In Issues Alert, Advises Users Not to Click on Suspicious Emails

Advertisement
By Manish Singh | Updated: 3 September 2017 00:13 IST
Highlights
  • Government has issued an alert on the spread of Locky ransomware
  • CERT warned citizens about suspicious emails with attachments
  • It advises people to take regular backups of their files

The government on late Saturday issued an alert on the spread of Locky, a type of ransomware through which attackers encrypt (lock) files on impacted computers and then demand payment from the victims in exchange of unlocking those files. Indian Computer Emergency Response Team (CERT-In), an arm of Ministry of Electronics and Information Technology, advised residents of India as well as Indian companies and corporate houses, to look out for suspicious emails with file attachments, the common way attackers are using to spread Locky. CERT said that a massive email campaign — in which more than 23 million have been sent — is underway to trick people into installing Locky ransomware via emails.

CERT advised people to not click on emails with subjects like "please print", "documents", "photo", "Images", "scans" and "pictures." It noted however that attackers may, and likely will, change their strategy and include other kind of messages in the subject line of their emails. In general, just avoid clicking on any suspicious email. "The messages contain ‘zip' attachments with Visual Basic Scripts (VBS) embedded in a secondary zip file. The VBS file contains a downloader which polls to domain 'greatesthits[dot]mygoldmusic[dot]com' (please do not visit this malicious website) to download variants of Locky ransomware,' CERT wrote in the notification.

Locky is one of the most popular ransomware, and among the first to have made global impact. First incidents of attacks with Locky were reported early last year, but then other kind of ransomware such as Petya and WannaCry became more prevalent. Last month security firms Symantec, MalwareBytes, and Comodo and others reported about resurgence of Locky ransomware in cyber attacks.

Advertisement

Last month, MalwareBytes reported about two new variants of Locky ransomware including the ones that used file extention ".diablo6” and ".Lukitus”.

Advertisement

CERT has advised ised to steer away from clicking on any such suspicious files, adding that they should consider taking regular backup of their important files. In an event of Locky ransomware attack, the victims lose access to all files. Furthermore, you should consider not keeping external hard drives -- in which you may have copied your important files -- attached to your computers at all times, as access to the will also get blocked in case you become a victim of Locky.

In a conversation with Gadgets 360 last month, Microsoft executives said that users should consider moving their important files to cloud (via online storage services such as Microsoft's OneDrive, Google's Drive, Dropbox) as files stored on their servers may remain accessible in case of ransomware attacks.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. ACT Fibernet Launches New Broadband Plans With Free OTT Subscriptions
  2. Flipkart Buy Buy 2025 Sale With Discounts on iPhone 16 Begins on This Date
  3. Flipkart Buy Buy 2025 Sale: Nothing Phone 3, Phone 3a Deals Revealed
  4. OnePlus 15R Surfaces on Benchmarking Site Ahead of India Launch
  5. Motorola Edge 70 With Pantone's 2026 Colour, Swarovski Crystals Launched
  6. HMD 101, HMD 100 With Built-In Radio Launched in India at These Prices
  7. Realme Watch 5 Launched in India With Up to 16-Day Battery Life: See Price
  8. FaceTime, Snapchat Video Calls Have Reportedly Been Blocked in Russia
  9. Nothing Phone 3a Lite Goes on Sale in India at This Price
  10. Instamart to Provide 10-Minute Delivery of Samsung Galaxy Devices
  1. Cloudflare Outage Blocks Access to Several Websites Including BookMyShow, SpaceX, Coinbase
  2. Samsung Galaxy S26 Series to Offer Built-In Support for Company's 25W Magnetic Qi2 Charger: Report
  3. Airtel Discontinues Two Prepaid Recharge Packs in India With Data Benefits, Free Airtel Xtreme Play Subscription
  4. Samsung Galaxy Phones, Devices Are Now Available via Instamart With 10-Minute Instant Delivery
  5. NotebookLM App Gets an In-Built Camera, Lets Users Upload Images as a Source
  6. HMD 101 Launched in India With 1,000mAh Battery, Auto Call Recording Alongside HMD 100: Price, Features
  7. Crypto Traders Await US Fed Signals as Bitcoin Price Drops to $91,900
  8. Nothing Phone 3a Lite Goes on Sale in India: See Price, Offers, Availability
  9. Realme Narzo Phones Confirmed to Launch in India Soon via Amazon
  10. Samsung Galaxy Watch Ultra 2 Launch Timeline Leaked; Could Debut Alongside Samsung Galaxy Watch 9
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.