Locket Ransomware

What is Locket Ransomware?

Locket Ransomware is a malicious program that can lock user's screen and leave him with no access to his personal or application data. It may also threaten to erase all files if you do not pay a ransom in approximately 72 hours. The good news is our researchers at Anti-spyware-101.com found out the malware cannot actually delete files on the infected computer or damage the device itself in any way. It means you do not have to risk your money to take over your computer’s control. All the user has to do is learn how to unblock the computer’s screen and get rid of the malicious program. To help with these tasks, our specialists have prepared manual deletion instructions you can find at the end of this report. Given you wish to get to know Locket Ransomware even better, we encourage you to read the rest of the article too.testtest

Where does Locket Ransomware come from?

It is believed Locket Ransomware could enter the system with various unreliable data downloaded from torrent and other file-sharing web pages or malicious websites. Consequently, users who come across it are advised to be more cautious in the future. First of all, it would be wise to stay away from potentially harmful web pages or sites that could distribute malicious content. Another thing we advise is to be careful with attachments received via Spam emails as it is how often ransomware enters the computer. As for an additional protection, it is always recommendable to use a legitimate antimalware tool since it can warn about various threats and stop them from causing trouble.

How does Locket Ransomware work?

After its launch, Locket Ransomware should block the screen with a red borderless window. On its left side, you can see Windows Security Shield’s logo and a clock counting the time given to the user to paying the ransom. The sentence above the clock says “Your files will be destroyed if the payment is not received within.” As for the right side of the malware’s window, you should see instructions telling what currency to choose to pay the ransom and how to make the payment. Plus, you can see the amount you are supposed to pay “0.1424 Bitcoin – 50$.” Such way of telling the price could be quite confusing, and it is difficult to say if it is done on purpose. The Bitcoin rates always change and at the moment of writing 0.1424 BTC is approximately 2000 US dollars. It is possible the threat’s developers took the text from a malicious program they have created some time ago since earlier Bitcoin price was much lower than it is today.

Furthermore, our researchers say you can use one of the buttons you should see on the threat’s window to unlock the screen. What we mean is the button named “Type password.” It appears to be if the user types ul62bfqSA, which should be a correct password, Locket Ransomware’s window should be closed, and he could access the computer freely again. There is one other option if this method does not work, but we will explain it in the deletion instructions available below the report. Researchers suspect the reason it might be so easy to remove the malicious program is that it could be still in the development stage. Nonetheless, even if it gets updated it is possible nothing bad will happen if you get rid of the malware’s window or if you eliminate it, so we encourage users not to give any money to the hackers who create such infections.

How to remove Locket Ransomware?

As soon as the screen gets unlocked, you could try to find a file downloaded and launched right before the malware appeared. If the user erases it, he should eliminate Locket Ransomware because it does not seem like it places any data on the infected computer. However, if removing the malicious program manually looks quite complicated and you would rather use automatic features, we advise you to install a legitimate antimalware tool. All there is to do is set it to scan the system and wait till you can see the report and the deletion button.

Unblock the screen

  1. Click the “Type password” button.
  2. Submit the following code: ul62bfqSA
  3. Or force the computer to shut down and turn it on again.

Erase Locket Ransomware

  1. Tap Windows key+E.
  2. Navigate to these locations one by one:
    %TEMP%
    %USERPROFILE%\desktop
    %USERPROFILE%\downloads
  3. Search for a malicious file downloaded before Locket Ransomware’s window showed up.
  4. Right-click the identified file and select Delete.
  5. Leave File Explorer.
  6. Empty Recycle bin.
  7. Restart your computer. 100% FREE spyware scan and
    tested removal of Locket Ransomware*
Disclaimer
Disclaimer

Leave a Comment

Enter the numbers in the box to the right *