Featured Articles

Analysts expect ARM to do well next year

Analysts expect ARM to do well next year

British chip designer ARM could cash in on the mobile industry's rush to transition to 64-bit operating systems and hardware.

More...
Huawei and Xiaomi outpace Lenovo, LG in smartphone market

Huawei and Xiaomi outpace Lenovo, LG in smartphone market

Samsung has lost smartphone market share, ending the quarter on a low note and Xiaomi appears to be the big winner.

More...
Intel Broadwell 15W coming to CES

Intel Broadwell 15W coming to CES

It looks like Intel will be showing off its 14nm processors, codenames Broadwell, in a couple of weeks at CES 2015.

More...
Gainward GTX 980 Phantom reviewed

Gainward GTX 980 Phantom reviewed

Today we’ll be taking a closer look at the recently introduced Gainward GTX 980 4GB with the company’s trademark Phantom cooler.

More...
Zotac ZBOX Sphere OI520 barebones vs Sphere Plus review

Zotac ZBOX Sphere OI520 barebones vs Sphere Plus review

Zotac has been in the nettop and mini-PC space for more than four years now and it has managed to carve…

More...
Frontpage Slideshow | Copyright © 2006-2010 orks, a business unit of Nuevvo Webware Ltd.
Tuesday, 24 December 2013 14:44

Cryptolocker infects 250,000 computers

Written by Nick Farrell



Crims have extorted a million from victims

Dell Secureworks estimated that 250,000 systems have been infected globally in the first 100 days of the CryptoLocker threat and more than a million dollars has been given to buy the cyber criminals off. CryptoLocker is ransomware which encrypts user's important files and then demands money in return for decrypting them.

Dell Secureworks said that the criminals have managed to amass 1,216 bitcoins since September. Had the hackers immediately exchange bitcoins into dollars, the cash pile would have amounted to $380,000. If however, they held onto the money and exchanged them as of last week, that figure rises to $980,000, based on the current weighted price of $804/BTC. Even if Cryptolocker is removed, there is no way the encrypted files can be decrypted. Decryption keys are stored on one of many Cryptolocker servers. The files can only be restored by paying the ransom.

The authors of Cryptolocker have created a robust program that is difficult to circumvent," SecureWorks said in a blog post. "Instead of using a custom, cryptographic implementation like many other malware families, Cryptolocker uses strong third-party certified cryptography offered by Microsoft's CryptoAPI."

The malware has targeted English-speakers, specifically those located in the United States. "Malware authors from Russia and Eastern Europe, where the CryptoLocker authors are thought to originate, commonly target victims in North America and Western Europe," the researchers said.

Early versions of the malware were distributed through spam targeting businesses and threatened them with a customer complaint to get them to open the file.

Nick Farrell

E-mail: This e-mail address is being protected from spambots. You need JavaScript enabled to view it
blog comments powered by Disqus

 

Facebook activity

Latest Commented Articles

Recent Comments