Flash Ransomware
Summary
The new, threatening tool is tracked as the Flash Ransomware and it can impact the files stored on the infected devices. Victims will no longer be able to access any of their documents, PDFs, archives, databases, images and many other file types. When all targeted file types have been processed and locked, the Flash Ransomware will deliver two ransom notes with instructions for its victims. The message in the text file states that victims must contact the attackers by sending an email to the ashtray@outlookpro.net address. The full text of the pop-up note is: To recover data, write here: 1) servicemanager@yahooweb.co 2) servicemanager2020@protonmail.com (if you are Russian, then you need to register on the site www.protonmail.com through the TOR browser hxxps://www.torproject.org/ru/download/ , since the proton is prohibited in your country) 3) Jabber client - servicemanager@jabb.im (registration can be done on the website - www.xmpp.jp.