ProLock - Ransomware
The ransomware was discovered in mid-2020 and is a rebranded version of PwndLocker. The ransom for the decryption key depends on the size of the network and can run from $100,000.00 to over $600,000.00. ProLock attacks public facing remote desktop servers and is also distributed via the QakBot trojan as the initial infection vectors. The ransomware uses multiple techniques for deployment and lateral movement including WMI and PowerShell.