Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - The Anti-Social Social Site since 2002

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews




spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Macrium Reflect FREE Edition
3. Smart Defrag
4. Visual C++ Redistributable Runtimes AIO Repack
5. Visual C++ Runtime Installer (All-In-One)
6. McAfee Removal Tool (MCPR)
7. MusicBee
8. Rufus
9. Sergei Strelec's WinPE
10. K-Lite Mega Codec Pack
More >>

top reads

Star How to Disable 1-Click Ordering on Amazon (and Avoid Surprise Charges)

Star How to Fix Shallow Paint Layer Depth in Bambu Studio

Star Aviator Betting Game Secrets: Unlock 97% RTP & Triple Your Wins

Star Windows Recall: What It Is, Why Hackers Will Love It, and How to Stay Safe

Star Star Trek Fleet Command Promo Codes: Redeem Codes for Free Shards, Blueprints And Resources

Star How To Use VLC Media Player to Trim Video Clips

Star What Is the $WinREAgent Folder and Can I Delete It?

Star Swear Your Way to Better Search Results

Star How to Get a Dark Start Menu and Taskbar in Windows 10 & 11

Star Enable, Disable, Manage, Delete or Create a System Restore Point


MajorGeeks.Com » News » November 2016 » Incompetent Ransomware Gang

Incompetent Ransomware Gang


Posted by: Timothy Weaver on 11/30/2016 12:07 PM [ comments Comments ]


A gang of miscreants have put together a new strain of ransomware which locks up a victims computer. Once locked, it displays a screen to call your friendly Indian "Microsoft" help desk to unlock the system.

The ransomware has been dubbed VindowsLocker because instead of just demanding a ransom in bitcoin, it locks the system and sends the victim to a "help" desk.

Jerome Segura, Malwarebytes Labs lead malware intelligence analyst, said: “The first part of the message refers to the infection being done by attackers and not Microsoft. The second part of the message says that this is Microsoft trying to help. It is a little confusing though.”

Instead of a command and control server to store the decryption keys, the bad guys abused Pastebin's API in what turned out to be a failed attempt to create an easy way to store the key.

“The ransomware comes with two hardcoded Pastebin API keys. The AES key, that is randomly generated on the victim machine, is pasted on Pastebin with their help,” Segura wrote.

“However, they misunderstood the Pastebin API (they hardcoded a user_key) that was meant to be used for a single session. After the predefined period of time, the key expired. Retrieving them in this intended way became no longer possible,” he said.

This means the person's files cannot be decrypted by the criminals.

If a victim calls the "help" number, he is connected to one of the criminals in India. But it is worthless to fill out the form for payment as the victim will not get his decrypted files back.

Source: SCMagazine


« San Francisco’s “Muni” Rail Network Hacked; Hacker Gets Hacked · Incompetent Ransomware Gang · Intel Core i7-7700K Kaby Lake gets benchmarked and OCed and more (15 Reviews) @ NT Compatible »




Comments
comments powered by Disqus

MajorGeeks.Com » News » November 2016 » Incompetent Ransomware Gang

© 2000-2025 MajorGeeks.com
Powered by Contentteller® Business Edition