/?pid=fantom-ransomware-pretends-to-be-windows-update-17790

Updated:05:04 AM EST Jan 22


this is ggmania.com subsite Fantom ransomware pretends to be Windows Update - TechAmok

Fantom ransomware pretends to be Windows Update - [security]
05:40 PM EDT - Aug,27 2016 - post a comment

A new strain of ransomware has been discovered, which utilizes a fake Windows Update screen, pretending to install a critical update. In reality, it is encrypting user's files. Discovered by Jakub Kroustek of AVG Technologies, the 'Fantom' ransomware plays tricks on potential victims by dropping an executable program named 'a.exe.' To cloak its malicious activity, the file's properties state that it contains a 'critical update' for Windows Update. A 2016 copyright from Microsoft is even written, to even lower suspicions.

Once the program is executed, it will extract and run another application under the name 'WindowsUpdate.exe.' This will display what looks like a screen configuring Windows Updates, complete with a percentage meter, and a reminder not to turn off the PC. The screen is designed to look like the ones many go through to install legitimate updates, in order to make victims think that there is nothing wrong going on. Once it is displayed, the program will not let the user switch applications.

As the screen pretends to 'configure Windows Updates,' it is silently encrypting files in the background like other ransomware variants. Once done, it will generate a random AES-128 key, which will be uploaded to the malware's Command & Control (C&C) server. It targets a wide number of file extensions, where a '.fantom' file extension will be appended to.

Lastly, it will open an HTML file, containing what we could easily consider one of the most headache-inducing ransom notes in the English language.

Unfortunately, there is no known method to decrypt files locked up by the Fantom ransomware.

Short overview of recent news articles

Xbox Developer Direct Livestream 2026 | Fable, Forza Horizon 6, (Jan,22 2026 )

Iridium Begins Testing its own Satellite Service for Phones (Jan,22 2026 )

AMD Releases Adrenalin Edition 26.1.1 WHQL Drivers (Jan,22 2026 )

AI in 2050 (Jan,18 2026 )

iOS 26.2 Fixes Major Security Flaws (Jan,17 2026 )

Google Links its AI to Your Gmail and Photos for "Personal (Jan,17 2026 )

Fastest Koenigsegg v Fastest Bugatti: DRAG RACE (Jan,17 2026 )

Creating a 48GB NVIDIA RTX 4090 GPU (Jan,17 2026 )

CES was frickin weird, guys (Jan,14 2026 )

Lee Cronin's The Mummy - Official Teaser Trailer (2026) Jack (Jan,12 2026 )

Ferrari SF90 XX v Xiaomi SU7 Ultra: DRAG RACE (Jan,12 2026 )

Welcome to the Wasteland - Fallout (American TV series) fan video (Jan,10 2026 )

GOOD LUCK, HAVE FUN, DON'T DIE Trailer 2 (2026) Sam Rockwell (Jan,09 2026 )

NVIDIA Releases GeForce 591.74 WHQL Drivers with DLSS 4.5 Support (Jan,07 2026 )

Predator: Badlands Exclusive Deleted Scene (2025) (Jan,07 2026 )

Greenland 2: Migration - Official Trailer 3 (2026) Gerard Butler, (Jan,06 2026 )

The Best Laptops of 2025 - For Gaming, Creators & Students! (Jan,05 2026 )

Punkt Updates its Privacy-Focused Smartphone (Jan,05 2026 )

Clicks Launches New Ways to Add a Physical Keyboard to Your Life (Jan,05 2026 )

Building a PC for the First Time (Jan,05 2026 )

Building a PC in 2026 (Jan,03 2026 )

I want this phone so bad... - Samsung Galaxy Z TriFold (Jan,02 2026 )

The Real Finewine Strikes Again: Ryzen 5600X, 5700X & 5800XT Revisit (Jan,02 2026 )

Nokia N8 Symbian Re-Awakened With Passion (Jan,02 2026 )

Europe Forces Apple to Open up More of iOS (Jan,02 2026 )

Must have Privacy and Security Tweaks: 2026 Edition (Jan,02 2026 )

How Did RAM Get So Expensive?! (Jan,01 2026 )

GeForce RTX 5090 prices to soar to $5,000 as NVIDIA and AMD prep GPU (Dec,31 2025 )

Hacker arrested for KMSAuto malware campaign with 2.8 million (Dec,30 2025 )

Killer Whale - Official Trailer (2026) Virginia Gardner, Mel (Dec,29 2025 )

NVIDIA Showed Me Their Supercomputer (Dec,28 2025 )

2026 CPU Launches! AMD, Intel & NVIDIA: Buy Now or Wait? (Dec,28 2025 )

Disable this Windows Feature that Secretly Eats Up RAM! (Dec,27 2025 )

New Windows 11 vs Old Malware: Will it survive? (Dec,27 2025 )

Samsung TriFold Durability Test: We found the limit (Dec,27 2025 )

TRUST WALLET CONFIRMS SECURITY BREACH (Dec,26 2025 )

Xiaomi 17 Ultra Leads And Samsung To Follow With A 10 Percent Price (Dec,26 2025 )

Merry Christmas Gaming Insanity (Dec,25 2025 )

Battlefield 6 - Official PS5 Features Trailer (Dec,24 2025 )

NVIDIA GeForce Hotfix Driver 591.67 Released (Dec,24 2025 )

Finally! A Battery That's Better Than Energizer and Duracell! (Dec,23 2025 )

NVIDIA Killing Cheap 16GB Local AI GPUs? (Dec,22 2025 )

Top 10 Movie Sequels of All Time (Dec,21 2025 )

He Built a Privacy Tool. Now He's Going to Prison (Kone Rodriguez, (Dec,21 2025 )

Insane Moves! B-Boy Shigekix vs. B-Boy Issin - Red Bull BC One World (Dec,20 2025 )

9800X3D & RTX 5070 Ti Gaming PC - MSI Project Zero Done Right (Dec,20 2025 )

The XG27AQWMG Sets a New Standard for 1440p OLED (Dec,19 2025 )

OnePlus 15R Boasts Huge 7,400 mAh Battery (Dec,19 2025 )

Motorola Refreshes moto g power for 2026 (Dec,19 2025 )

NVIDIA GeForce 591.59 WHQL Driver (Dec,18 2025 )

>> News Archive <<

TechAmok - Privacy Policy        loading time:0.01secs