Rugi Ransomware

General News

Summary

By initiating an encryption routine with an uncrackable cryptographic algorithm, the threat can lock a wide variety of file types, rendering them both unusable and inaccessible in the process. As part of its nefarious activities, Rugi will mark all files it affects by appending .rugi as a new extension to their original names. After locking all targeted file types, the threat will drop a ransom note on the infected machine. To restore their files, the affected users will have to buy the decryption key and software tool from the attackers by paying the demanded ransom. To send the chosen file and receive additional instructions, victims are directed towards messaging the two email addresses found in the ransom note - manager@mailtemp.ch and supporthelp@airmail.cc.

Classifications

industries
Entertainment
applications
Customer Service & Support

AskAI Classifications

Labels
Cybersecurity Software Anti-Malware Software SaaS Security

Linked Companies

EnigmaSoft
$1M to $5M