1、勒索软件爆米花鼓励受害人协助传播
标题:New Scheme: Spread Popcorn Time Ransomware, get chance of free Decryption Key
作者信息:December 8, 2016 11:04 AM By Lawrence Abrams
//BEGIN
Yesterday a new in-development ransomware was discovered by MalwareHunterTeam called Popcorn Time that intends to give victim's a very unusual, and criminal, way of getting a free decryption key for their files. With Popcorn Time, not only can a victim pay a ransom to get their files back, but they can also try to infect two other people and have them pay the ransom in order to get a free key.
To make matters worse, there is unfinished code in the ransomware that may indicate that if a user enters the wrong decryption key 4 times, the ransomware will start deleting files.
It should be noted, that this ransomware is not related to the Popcorn Time application that downloads and streams copyrighted movies.
勒索软件届又出幺蛾子了!
最新的勒索软件声称受害者只要能传播给2个其他的用户,并且这2个“用户”感染并支付赎金,那么这个受害者自己就能免费得到解锁密码!而不用付钱。当然也可以直接付钱,而不用去祸害其他人。
这种“商业模式”真够毒的了!
该勒索软件被命名为Popcorn Time,看样子整个软件还处于开发状态中,也就是还没有完成最后的开发工作。从勒索软件目前的运行流程看,只要客户输错解密密码4次,那么该勒索软件就会删除计算机中的文件,根本不给恢复的机会了。
注意:这个Popcorn Time与下载流媒体电影的APP应用没啥关系。
//END
As already stated, this ransomware is currently in development, so many things may change over time. As this ransomware develops, we will release new information.
被勒索加密后的文件扩展名增加字符串filock,比如文件test.jpg被加密后其文件名会变为test.jpg.filock.最新版勒索软件的目标目录为:My Documents(我的文档);My Pictures;My Music以及Desktop(桌面)上的文件。针对的文件类型有525种之多(但不包括exe,dll或ocx等可执行文件):基本覆盖了对用户有用的所有类型的文档和程序文件。
点评:针对勒索软件,建议备份备份再备份。 |