You can check the latest ransomware information.
[Crypto360 ransomware]
[Virus/Malware Activity Report: Crypto360 Ransomware]
Due to a breach believed to be in the form of Crypto360 ransomware, we would like to
confirm the situation and provide a warning as follows.
Crypto360 ransomware
The ransomware is called Crypto360 and appears to be changing all files with the encrypted name.360 extension.
How it works
file version
[Figure 1 File version]
[Figure 2 File properties]
behavioral process
Register startup program
Registers itself in the startup program to automatically re-run when Windows starts.
[Figure 3 Startup program registration]
Infection results
The information file is created in each folder with the name !_INFO.txt, and when encryption is performed, the files are changed to <encrypted name.360>.
[Figure 4 Infection result 1]
[Figure 5 Infection result 2]
White Defender compatible
It supports real-time automatic restoration of files that will be encrypted before the malicious actions and blocking of WhiteDefender ransomware.
[Figure 6 Block message]
[Figure 7 Block message]