Pranksters installing MBRLocker wiper, blame Vitali Kremez, MalwareHunterTeam for attack | SC Media

Pranksters installing MBRLocker wiper, blame Vitali Kremez, MalwareHunterTeam for attack | SC Media

A malicious actor is trying to discredit two of the more well-known personalities in cybersecurity circles by including their names in a note that accompanies a new MBRLocker that has been making the rounds.


MBR stands for master boot record. This malware replaces the MBR which effectively stops the computer’s operating system from restarting. Instead when the computer attempts to restart a profanity-laced plain text note appears saying the computer problems come courtesy of Security researcher Vitali Kremez and MalwareHunterTeam, reported Bleeping Computer researchers.


There is another version of the note the adds the name the security company SentinelOne stating “you need to buy SentinelOne antivirus in order to restore you computer” but then says Kremez must be contacted using one of the two supplied emails to again gain access to the computer.


Neither Kremez, MalwareHunterTeam or SentinelOne are in any way responsible for what is taking place.


The malware itself is hidden in what is advertised as being free software or hacked popular websites. It does not ask for a ransom, but seems to be a throwback type attack that were launched merely for the enjoyment of the threat actor. ..

Support the originator by clicking the read the rest link below.