Posts tagged RAA

RAA targets Windows OS and is distributed via emails containing JavaScript files disguised as document attachments. Opening the malicious file generates a phony Word document in the “My Documents” folder. Subsequently, RAA will identify all connected drives with open write permissions, scan them for specific files types, and proceed to encrypt them with AES using code from the CryptoJS library.

Read More
Ransomware VariantsNJCCICRAA