2、安全厂商发现巴西葡萄牙语提示的勒索软件
标题:The “notification” ransomware lands in Brazil
作者信息:October 25, 2016. 7:57 am By GReAT (Kaspersky Lab's Global Research & Analysis Team)
//BEGIN
It’s unusual for a day to go by without finding some new variant of a known ransomware, or, what is even more interesting, a completely new one. Unlike the previously reported and now decrypted Xpan ransomware, this same-but-different threat from Brazil has recently been spotted in the wild. This time the infection vector is not a targeted remote desktop intrusion, but a more massively propagated malicious campaign relying on traditional spam email.
如果哪怕有一天没出现新的勒索软件的话,都会让安全研究人员感到奇怪。这不,最近又发现了一个全新的勒索软件,不再像刚刚发布分析报告的Xpan勒索软件一样,这次发现的勒索软件采取了传统的垃圾邮件的发送方式,针对不特定目标进行攻击。
//END
Growth of ransomware in Brazil
The growth of ransomware in Brazil has been nothing short of impressive, taking into consideration that during October 2016 alone the popular ransomware family Packed.NSIS.MyxaH.gen family grew by 287.96%, and another of the usual suspects Trojan-Ransom.Win32.CryptXXX.gen grew by 56.96%, (when compared to the previous month in each case.)
In 2016, the 3 most important families of ransomware have been Trojan-Ransom.Win32.Blocker, accounting for 49.63% of the total infections,Trojan-Ransom.NSIS.Onion, 29.09%, and Trojan-Ransom.Win32.Locky, 3.99%.
Currently, Brazil is the eighth most affected country worldwide as far as ransomware infections go for this year, and ranked first in Latin America.
巴西的勒索软件的发展趋势
巴西的勒索软件的增长趋势令人印象深刻,单单这一个月(10月)内,单一的勒索软件家族Packed.NSIS.MyxaH.gen就比上月增长近三倍,而Trojan-Ransom.Win32.CryptXXX.gen则增长了约50%多。整体来讲,2016年的前三甲勒索软件分别是Trojan-Ransom.Win32.Blocker、Trojan-Ransom.NSIS.Onion和Trojan-Ransom.Win32.Locky,所占比例分别是49.63%、29.09%和3.99%。
目前巴西在全世界范围内勒索软件感染排名第八,而在拉美地区则拔得头筹。
点评:很快可能还会有西班牙、阿拉伯语版本的勒索软件....对付勒索软件,请备份备份再备份。 |