Lilith Ransomware is yet another ransomware that does double-extortion attacks, which is when the threat actors steal data before encrypting devices. Upon execution, Lilith ransomware initially searches for a list of hard-coded processes in the file and terminates its execution if any of them are running on the target's machine. This step ensures that these processes do not block access to the files to be encrypted. Lilith, the new family doesn't introduce any novelties. However, it's one of the latest threats, along with
RedAlert Ransomware and 0mega Ransomware that also recently emerged.
Lilith Ransomware Signatures
Family: Trojan:Win64/Vigorf.A
MD5: b7a182db3ba75e737f75bda1bc76331a
SHA256: f3caa040efb298878b99f883a898f76d92554e07a8958e90ff70e7ff3cfabdf5
Lilith Ransomware Download