Scams & Deception

Cryptolocker Malware Holds Computers Ransom for $300

Cryptolocker Malware Holds Computers Ransom for $300

A particularly nasty malware known as Cryptolocker holds computers users’ data for ransom and demands $300 to restore the files.

Sponsored Links

Cryptolocker

This particular malware is spread in email attachments which claim to be from a legitimate businesses. It may also be spread via drive-by downloads (that is, software installed by simply visiting a malicious link).

Once installed, Cryptolocker “locks” the files on the computer by means of encryption, and the files can only be unlocked using an encryption key. If the user does not pay the $300 ransom in the allotted time, the encryption key is deleted, and the files are essentially lost forever.

Cryptolocker installs itself in the “Documents and settings” folder on Windows computers and scans the hard drive for certain file types to encrypt. One completed, the victim is shown a red warning screen with a ticking clock, displaying the time limit to pay the ransom, which is typically 72 to 100 hours.

Sponsored links

The most common method for distributing Cryptolocker is via fake UPS, FedEx, or DHL tracking emails, using attachments disguised as PDF files. (See here and here for examples of such fake emails). Various other types correspondence have been used, but they always include an email attachment.

To prevent being tracked, the hackers behind Cryptolocker demand being paid via anonymous cash forms, such as Bitcoins or Green Dot MoneyPak.

To date, there is no known protection against Cryptolocker once it has been installed and files have been encrypted. Malwarebytes suggests that a System Restore or other recovery methods may restore some files. It also lists file types targeted by Cryptolocker:

3fr, accdb, ai, arw, bay, cdr, cer, cr2, crt, crw, dbf, dcr, der, dng, doc, docm, docx, dwg, dxf, dxg, eps, erf, indd, jpe, jpg, kdc, mdb, mdf, mef, mrw, nef, nrw, odb, odm, odp, ods, odt, orf, p12, p7b, p7c, pdd, pef, pem, pfx, ppt, pptm, pptx, psd, pst, ptx, r3d, raf, raw, rtf, rw2, rwl, srf, srw, wb2, wpd, wps, xlk, xls, xlsb, xlsm, xlsx

International Business Times states that paying the $300 does get a valid key and will restore your files, while some on this forum state that it may not.

Bottom Line

Cryptolocker is a real threat. The best defense against Cryptolocker is to avoid opening unknown email attachments or clicking on links posted on social media websites. It’s also best to keep your data backed up regularly. Some anti-malware apps are designed to prevent malware from being installed before they can cause damage.

Sponsored links
View Comments (1)

1 Comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Scams & Deception

More in Scams & Deception

  • Disney Ticket Coupon Giveaway: Survey Scam

    Don’t share a link which promises to give you 4 free tickets to Disneyland. It’s a scam. Sponsored links

  • Social Media Scam: Fake Marlboro Coupon

    You may not want to click a link for a free carton of Marlboro cigarettes that is going around on social media. Sponsored Links

  • Don’t Share the Fake Little Caesars Free Pizza Coupon

    A fake coupon for 4 free pizzas from Little Caesars has been seen circulating on social media. Sponsored links

  • Chinese Scam Tricks Users Into Registering Domains

    A common scam involves registered owners of internet domains receiving an email claiming that a business in China is attempting to register several domains containing their company name in Asia. It’s merely a ploy designed at getting unsuspecting domain owners to “protect” their business name from Asian registrants – by unnecessarily purchasing multiple domains....

  • Scam Alert: Car Wrap Sales Pitch

    If you receive an email offering to wrap your car in advertising in exchange for a weekly paycheck, be aware that this is likely a scam. Sponsored Links

  • Survey Scam: Captain Morgan Free Cases of Rum Giveaway

    A post circulating on social media promises free cases of Captain Morgan rum to celebrate the company’s anniversary. The giveaway, however, is fake. Sponsored links

  • Fake Giveaway: Walmart Black Friday Passes

    A link circulating on social media claims Walmart is giving away 2 free “Early Entry” passes to access Black Friday. It’s not true. Sponsored links

  • Survey Scam: No Starbucks Lifetime Passes

    A fake post online claims that Starbucks is giving away free Lifetime Passes on its 44th anniversary. The post is merely a survey scam. Sponsored links

Celebrating the weird and fake since 2008.

Copyright © 2008-2016 Wafflesatnoon.com, Inc. Theme by MVP Themes, powered by Wordpress.