Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
When the Eternal Blue exploit was released on Wikileaks a bunch of documents were published, showing one secret agency added Russian or Arabic strings into their malware to make attribution more harder.
-
More commonly they look if a russian language keyboard is installed. Much easier than checking geolocation.
So there is a ransomware that after infecting a device checks its geolocation. If the device is in Russia it does not encrypt anything and is harmless.
I wonder which country is this malware from...
rant