±Recent Visitors

Recent Visitors to Com-Central!

±User Info-big


Welcome Anonymous

Nickname
Password

Membership:
Latest: HighestAce
New Today: 0
New Yesterday: 0
Overall: 6648

People Online:
Members: 0
Visitors: 255
Total: 255
Who Is Where:
 Visitors:
01: Downloads
02: Community Forums
03: Photo Gallery
04: Community Forums
05: Community Forums
06: Member Screenshots
07: Photo Gallery
08: Community Forums
09: Community Forums
10: Community Forums
11: Photo Gallery
12: Community Forums
13: Community Forums
14: Community Forums
15: Community Forums
16: Community Forums
17: Photo Gallery
18: Community Forums
19: Photo Gallery
20: Photo Gallery
21: Community Forums
22: Community Forums
23: CPGlang
24: Community Forums
25: Downloads
26: Community Forums
27: Home
28: Home
29: Home
30: Photo Gallery
31: Statistics
32: Community Forums
33: Your Account
34: Community Forums
35: Community Forums
36: Community Forums
37: Community Forums
38: Photo Gallery
39: Community Forums
40: Photo Gallery
41: Photo Gallery
42: Community Forums
43: Your Account
44: Home
45: Community Forums
46: Community Forums
47: Home
48: Community Forums
49: Community Forums
50: CPGlang
51: Community Forums
52: Community Forums
53: Downloads
54: Community Forums
55: Photo Gallery
56: Photo Gallery
57: Community Forums
58: Photo Gallery
59: Photo Gallery
60: Downloads
61: Community Forums
62: Photo Gallery
63: Photo Gallery
64: Downloads
65: Community Forums
66: Community Forums
67: Home
68: Community Forums
69: Home
70: Community Forums
71: Community Forums
72: Community Forums
73: Community Forums
74: Community Forums
75: Community Forums
76: Community Forums
77: Home
78: Home
79: Community Forums
80: Community Forums
81: Photo Gallery
82: Community Forums
83: Community Forums
84: Home
85: Home
86: CPGlang
87: Community Forums
88: Photo Gallery
89: Community Forums
90: Community Forums
91: Community Forums
92: Community Forums
93: Community Forums
94: Community Forums
95: Home
96: Home
97: Community Forums
98: Home
99: Photo Gallery
100: Community Forums
101: CPGlang
102: Downloads
103: Community Forums
104: Photo Gallery
105: Community Forums
106: Downloads
107: Home
108: Community Forums
109: Home
110: Community Forums
111: Community Forums
112: Contact
113: Community Forums
114: Home
115: Community Forums
116: Your Account
117: Community Forums
118: Community Forums
119: Community Forums
120: Home
121: Photo Gallery
122: Home
123: Photo Gallery
124: Community Forums
125: Community Forums
126: Community Forums
127: Home
128: Member Screenshots
129: Home
130: Home
131: Community Forums
132: Photo Gallery
133: Photo Gallery
134: Home
135: Community Forums
136: Community Forums
137: Community Forums
138: Community Forums
139: Community Forums
140: Your Account
141: Member Screenshots
142: Community Forums
143: Community Forums
144: Member Screenshots
145: News Archive
146: Photo Gallery
147: Downloads
148: Home
149: Community Forums
150: CPGlang
151: Downloads
152: Community Forums
153: Home
154: Photo Gallery
155: Community Forums
156: Community Forums
157: Photo Gallery
158: Community Forums
159: Community Forums
160: Community Forums
161: Home
162: Community Forums
163: Community Forums
164: Photo Gallery
165: Home
166: Home
167: News
168: Community Forums
169: Community Forums
170: Home
171: Downloads
172: Community Forums
173: Home
174: Home
175: Community Forums
176: Community Forums
177: Community Forums
178: Community Forums
179: Community Forums
180: Community Forums
181: Member Screenshots
182: Home
183: Photo Gallery
184: Community Forums
185: Photo Gallery
186: News
187: Community Forums
188: Community Forums
189: Photo Gallery
190: Community Forums
191: CPGlang
192: CPGlang
193: Community Forums
194: Community Forums
195: Community Forums
196: Photo Gallery
197: CPGlang
198: Community Forums
199: Home
200: CPGlang
201: Community Forums
202: Photo Gallery
203: Home
204: Home
205: Community Forums
206: Community Forums
207: Photo Gallery
208: Community Forums
209: Community Forums
210: Community Forums
211: Photo Gallery
212: Community Forums
213: Community Forums
214: CPGlang
215: Community Forums
216: Photo Gallery
217: Community Forums
218: Downloads
219: Photo Gallery
220: Photo Gallery
221: Community Forums
222: Home
223: Community Forums
224: Member Screenshots
225: Community Forums
226: Downloads
227: Community Forums
228: Community Forums
229: Member Screenshots
230: News
231: Community Forums
232: Community Forums
233: Photo Gallery
234: Home
235: Community Forums
236: CPGlang
237: Home
238: Community Forums
239: Community Forums
240: Community Forums
241: Photo Gallery
242: Community Forums
243: Community Forums
244: Photo Gallery
245: Home
246: CPGlang
247: Photo Gallery
248: Community Forums
249: Home
250: CPGlang
251: Community Forums
252: Photo Gallery
253: Home
254: Community Forums
255: Community Forums

Staff Online:

No staff members are online!
Trojan Cryzip extorts decryption fee :: Archived
This is a forum for Software related items such as OS', Virus notices, cool or free programs, etc. Gaming software should go in the gaming folder pertaining to the current info.
Post new topic    Revive this topic    Printer Friendly Page     Forum Index ›  Software

Topic Archived View previous topic :: View next topic  
Author Message
Uhu_Rodion
Janitor

Offline Offline
Joined: Nov 14, 2004
Posts: 1437
Location: L'Aquila, Italy
PostPosted: Tue Mar 14, 2006 9:05 pm
Post subject: Trojan Cryzip extorts decryption fee

"A Trojan making the rounds encrypts victims' files and demands a $300 payment to have them decrypted and unlocked, according to a report by security firm Lurhq Threat Intelligence Group."

This so-called "ransomware" Trojan, dubbed Cryzip, is the second of its type to emerge in the past 10 months, following the PGPcoder Trojan. It also is the third such Trojan to appear since 1989.

Lurhq researchers noted Tuesday that the appearance within a year of two encryption Trojans may indicate they are part an emerging trend in malicious software.

"Last year, we saw the PGPcoder, and anything that shows itself to be a viable way to make money, usually people start jumping on the bandwagon after that," said Joe Stewart, senior security researcher for Lurhq.

The Cryzip Trojan will search for files, such as source code or database files, on infected systems. It then uses a commercial zip library to store the encrypted files. Security researchers, however, have yet to determine how the Trojan is distributed, noting it could come from a number of sources, including malicious Web sites, or enter through a previously created backdoor on a virus-infested computer.

The Trojan will overwrite the victims' text and then delete it, leaving only encrypted material that contains the original file name and _CRYPT_.ZIP.

"Unlike the PGPcoder that used a trivial encryption scheme, the zip encryption is stronger. It's harder to go through a list of possible (encryption) keys to get the information back," Stewart said. "But a brute-force attack is still possible, if a user has a copy of the original file. It can be reversed-engineered with a copy of the Trojan."

Cryzip has yet to become a widespread problem. Lurhq said it is aware of only about two dozen infection cases. Increasingly, malicious software writers are becoming more interested in launching low-level attacks in the hopes that it will take longer for security companies to notice their presence and develop a defense.

Users may also be less willing to seek help if it involves disclosing where they might have come across the threat.

The Cryzip writer, who uses an E-Gold account for collecting ransom payments, tells the victims: "Your computer catched our software while browsing illegal porn pages, all your documents, text files, databases was archived with long enough password. You cannot guess the password for your archived files--password length is more than 10 symbols that makes all password recovery programs fail to bruteforce it."

The Trojan writer then goes on to demand that a $300 payment be sent electronically to the E-Gold account.

Stewart advises users to frequently back up their important files, not only to minimize the damage if their system crashes but to reduce damage from an encryption attack.


-> news.zdnet.com/2100-10...ag=nl.e589


Marco
Back to top
View user's profile Visit poster's website MSN Messenger Photo Gallery
Shades
Forum Tree-Rat

Offline Offline
Joined: Mar 07, 2005
Posts: 6475
Location: 3rd Branch up, 'Ye Olde Oak', Green Wood.
PostPosted: Wed Mar 15, 2006 12:39 pm
Post subject: Re: Trojan Cryzip extorts decryption fee

Hang on... if there's an account, it's trackable.
And who's gonna make any online payments to someone writing this stuff anyway?
Geeze talk about unsafe.

_________________
Skwerl's place.

Com-Central's cutest, fluffiest, twitchiest, tail.
CPU > Intel i9-9900k (o/c 4.9GHz); COOLING > BeQuiet! Dark Rock Pro 4;
MOBO > ASUS PRIME Z390-A; RAM > 2x32GB Corsair LPX 2666MHz;
GPU > Gigabyte GEFORCE GTX650Ti PCI-e 3.0 2Gb GDDR5;
AUDIO > Creative X-Fi Xtreme Music (plus - Universal Audio UAD2 Quad Custom accelerator);
HDD > 3x1TB+ M.2. SSDs; LCD > DELL - S2419HGF (1920x1080);
PSU > 650W be quiet Straight Power 11 - 80+ Gold;
CASE > BeQuiet! SILENT BASE 601; OS > Windows 11 Home Advanced (64-bit).
Back to top
View user's profile Visit poster's website ICQ Number
Display posts from previous:   
Post new topic    Revive this topic    Printer Friendly Page    Forum Index ›  Software
Page 1 of 1
All times are GMT - 6 Hours

Archive Revive
Username:
This is an archived topic - your reply will not be appended here.
Instead, a new topic will be generated in the active forum.
The new topic will provide a reference link to this archived topic.