Products
Features
YouTube Video Summarizer
Summarize YouTube videos
Web & PDF Highlighter
Highlight web pages & PDFs
Chat with PDF
Ask any PDF questions with AI
Ask AI Clone
Chat with your highlights & memories
Audio Transcriber
Transcribe audio files to text
Glasp Reader
Read and highlight articles
Kindle Highlight Export
Export your Kindle highlights
Idea Hatch
Hatch ideas from your highlights
Integrations
Obsidian Plugin
Notion Integration
Pocket Integration
Instapaper Integration
Medium Integration
Readwise Integration
Snipd Integration
Hypothesis Integration
Apps & Extensions
Chrome Extension
Safari Extension
Edge Add-ons
Firefox Add-ons
iOS App
Android App
Discover
Discover
Ideas
Discover new ideas and insights
Articles
Curated articles and insights
Books
Book recommendations by great minds
Posts
Essays and notes from readers
Quotes
Inspiring quotes collection
Videos
Curated videos and summaries
Explore Glasp
Glasp Newsletter
Weekly insights and updates
Glasp Talk
Interview series with great minds
Glasp Blog
Latest news and articles
Glasp Use Cases
Learn how others use Glasp
Build & Support
Glasp API
Access Glasp's API for developers
MCP Connector
Connect Glasp to Claude & ChatGPT
Community
Glasp Reddit Community
Students
Student discount and benefits
FAQs
Frequently Asked Questions
AboutPricing
DashboardLog inSign up

Sad Ransomware

November 4, 2017
by
The PC Security Channel
YouTube video player
Sad Ransomware

TL;DR

A brand new ransomware sample has been discovered, undetected by major antivirus software, which encrypts files and displays a ransom note.

Transcript

who knows tell geo wallpaper yesterday I came across a brand new ransomware sample which I hadn't seen before at the moment I believe it was detected by only seven engines right now I just uploaded it to VARs total and as you can see we have 21 out of 67 a fee company's picking it up it is however still undetected by a lot of products including Mic... Read More

Key Insights

  • 👶 The new ransomware sample is currently undetected by several major antivirus products, including Microsoft's.
  • 👤 The ransomware follows traditional malware behavior patterns, deleting itself after execution and encrypting the user's data.
  • 👶 It creates a new executable in shared folders to spread the infection across a network.
  • 💨 The ransom note includes multiple formats, such as desktop background change, HTA file, and text, providing various ways to communicate the ransom demand.
  • 😒 The ransomware uses a non-onion domain for the ransom payment website, which is an unusual choice.
  • 💌 The email address provided for contact is hosted on ProtonMail, a popular encrypted email service.
  • 💪 The encryption used by the ransomware is AES-256, which is a strong encryption algorithm.

Install to Summarize YouTube Videos and Get Transcripts

Explore YouTube Video Summarizer or Get YouTube Transcript Extractor

Questions & Answers

Q: How many antivirus engines currently detect the new ransomware sample?

At the moment, only seven antivirus engines detect the new ransomware sample. This low detection rate is concerning, as it leaves many systems vulnerable to the threat.

Q: What happens when the ransomware is executed?

After execution, the ransomware first deletes itself and then encrypts the user's data. It also creates a copy in shared folders to spread the infection to other systems on the network.

Q: How is the ransom note displayed?

The ransom note is displayed on the infected user's system, informing them that their files have been encrypted. The ransom note includes a website for ransom payment and an email address for contact.

Q: Can the encrypted files be decrypted without payment?

Based on the information provided, it is unlikely that the encrypted files can be decrypted without paying the ransom. The ransomware claims to use AES-256 encryption, which is a strong encryption algorithm.

Summary & Key Takeaways

  • A new ransomware sample has been found, detected by only a few antivirus engines, including Var's Total.

  • The ransomware deletes itself and creates an executable in shared folders to infect other systems.

  • The ransom note is displayed, files are encrypted using AES-256, and a ransom payment website and email address are provided.


Read in Other Languages (beta)

English

Share This Summary 📚

Summarize YouTube Videos and Get Video Transcripts with 1-Click

Download browser extensions on:

Try YouTube Summary with ChatGPT & Claude or YouTube Transcript Generator

Explore More Summaries from The PC Security Channel 📚

Beware the flashing skull | Petya Ransomware thumbnail
Beware the flashing skull | Petya Ransomware
The PC Security Channel
DynA-Crypt Ransomware | feat. Karsten from G Data thumbnail
DynA-Crypt Ransomware | feat. Karsten from G Data
The PC Security Channel
Security Talk 6: Bleeping Computer sued for a negative review and more thumbnail
Security Talk 6: Bleeping Computer sued for a negative review and more
The PC Security Channel
NordVPN Hacked! How secure is VPN Really? thumbnail
NordVPN Hacked! How secure is VPN Really?
The PC Security Channel
Google Chrome vs Microsoft Edge | Security Test thumbnail
Google Chrome vs Microsoft Edge | Security Test
The PC Security Channel
MGM & Defcon Venue hack: BlackCat Ransomware thumbnail
MGM & Defcon Venue hack: BlackCat Ransomware
The PC Security Channel

Summarize YouTube Videos and Get Video Transcripts with 1-Click

Download browser extensions on:

Try YouTube Summary with ChatGPT & Claude or YouTube Transcript Generator

Apps & Extensions

  • Chrome Extension
  • Safari Extension
  • Edge Add-ons
  • Firefox Add-ons
  • iOS App
  • Android App

Key Features

  • YouTube Video Summarizer
  • Web & PDF Summarizer
  • Web & PDF Highlighter
  • Chat with PDF
  • Ask AI Clone
  • Audio Transcriber
  • Glasp Reader
  • Kindle Highlight Export
  • Idea Hatch

Integrations

  • Obsidian Plugin
  • Notion Integration
  • Pocket Integration
  • Instapaper Integration
  • Medium Integration
  • Readwise Integration
  • Snipd Integration
  • Hypothesis Integration

More Features

  • APIs
  • MCP Connector
  • Blog & Post
  • Embed Links
  • Image Highlight
  • Personality Test
  • Quote Shots

Company

  • About us
  • Blog
  • Community
  • FAQs
  • Job Board
  • Newsletter
  • Pricing
Terms

•

Privacy

•

Guidelines

© 2026 Glasp Inc. All rights reserved.