±Recent Visitors

Recent Visitors to Com-Central!

±User Info-big


Welcome Anonymous

Nickname
Password

Membership:
Latest: HighestAce
New Today: 0
New Yesterday: 0
Overall: 6648

People Online:
Members: 0
Visitors: 329
Total: 329
Who Is Where:
 Visitors:
01: Photo Gallery
02: Community Forums
03: Downloads
04: Home
05: Community Forums
06: Member Screenshots
07: Community Forums
08: Community Forums
09: Home
10: Home
11: Home
12: Home
13: Home
14: Home
15: Home
16: Home
17: Home
18: Home
19: Home
20: Home
21: Home
22: Home
23: Home
24: Home
25: Home
26: Home
27: Home
28: Home
29: Home
30: Home
31: Home
32: Home
33: Home
34: Home
35: Home
36: Home
37: Home
38: Home
39: Home
40: Home
41: Home
42: Home
43: Home
44: Home
45: Home
46: Home
47: Home
48: Home
49: Home
50: Home
51: Home
52: Home
53: Home
54: Home
55: Home
56: Home
57: Home
58: Home
59: Home
60: Home
61: Home
62: Home
63: Home
64: Home
65: Home
66: Home
67: Home
68: Home
69: Home
70: Home
71: Home
72: Home
73: Home
74: Home
75: Home
76: Home
77: Home
78: Home
79: Photo Gallery
80: Home
81: Home
82: Home
83: Home
84: Home
85: Home
86: Home
87: Home
88: Home
89: Home
90: Home
91: Home
92: Home
93: Home
94: Home
95: Home
96: Home
97: Home
98: Home
99: Home
100: Home
101: Home
102: Home
103: Home
104: Home
105: Home
106: Home
107: Home
108: Home
109: Home
110: Home
111: Home
112: Home
113: Home
114: Community Forums
115: Photo Gallery
116: Community Forums
117: Member Screenshots
118: Downloads
119: Downloads
120: Photo Gallery
121: Community Forums
122: Community Forums
123: Home
124: Photo Gallery
125: Photo Gallery
126: Community Forums
127: News Archive
128: Community Forums
129: Member Screenshots
130: Community Forums
131: Home
132: Home
133: Home
134: Home
135: Home
136: Home
137: Home
138: Home
139: Home
140: Home
141: Home
142: Home
143: Home
144: Community Forums
145: Member Screenshots
146: Community Forums
147: Community Forums
148: Home
149: News
150: Home
151: Home
152: Community Forums
153: Home
154: Community Forums
155: Home
156: Home
157: Home
158: Home
159: Member Screenshots
160: Downloads
161: Member Screenshots
162: Community Forums
163: Photo Gallery
164: Downloads
165: Downloads
166: Home
167: Community Forums
168: Home
169: Community Forums
170: Community Forums
171: Photo Gallery
172: Home
173: Downloads
174: Downloads
175: Downloads
176: Your Account
177: Downloads
178: Home
179: Community Forums
180: Home
181: Home
182: Home
183: Home
184: Community Forums
185: Home
186: Member Screenshots
187: Community Forums
188: Community Forums
189: Home
190: Home
191: Member Screenshots
192: Home
193: Home
194: Photo Gallery
195: Community Forums
196: Member Screenshots
197: Community Forums
198: News Archive
199: Home
200: Community Forums
201: Home
202: Community Forums
203: Community Forums
204: Community Forums
205: Member Screenshots
206: Community Forums
207: Home
208: Home
209: Community Forums
210: Downloads
211: Community Forums
212: Home
213: Downloads
214: Community Forums
215: Home
216: Community Forums
217: Community Forums
218: Community Forums
219: Home
220: Home
221: Photo Gallery
222: Downloads
223: Community Forums
224: Community Forums
225: News
226: Community Forums
227: Community Forums
228: News Archive
229: Home
230: Downloads
231: Community Forums
232: Community Forums
233: Photo Gallery
234: Photo Gallery
235: News Archive
236: Photo Gallery
237: News Archive
238: Home
239: Member Screenshots
240: Home
241: Community Forums
242: Home
243: Photo Gallery
244: Community Forums
245: Downloads
246: Home
247: News Archive
248: Community Forums
249: Home
250: Community Forums
251: Community Forums
252: Home
253: Home
254: Home
255: Home
256: Home
257: Community Forums
258: Community Forums
259: Community Forums
260: Community Forums
261: Downloads
262: Home
263: Home
264: Home
265: Community Forums
266: Home
267: Community Forums
268: Member Screenshots
269: Community Forums
270: Member Screenshots
271: Home
272: Downloads
273: Community Forums
274: Photo Gallery
275: Community Forums
276: Home
277: Home
278: Community Forums
279: Home
280: Community Forums
281: Community Forums
282: Home
283: Community Forums
284: Community Forums
285: Member Screenshots
286: Community Forums
287: Member Screenshots
288: Downloads
289: Community Forums
290: Community Forums
291: Community Forums
292: Community Forums
293: Home
294: Community Forums
295: Home
296: Home
297: Downloads
298: Community Forums
299: Community Forums
300: Community Forums
301: Member Screenshots
302: Downloads
303: Downloads
304: Community Forums
305: Community Forums
306: Home
307: Photo Gallery
308: Community Forums
309: Your Account
310: Community Forums
311: Home
312: Photo Gallery
313: Member Screenshots
314: Community Forums
315: Community Forums
316: Downloads
317: Community Forums
318: Community Forums
319: Home
320: Member Screenshots
321: Home
322: Member Screenshots
323: Member Screenshots
324: Community Forums
325: Community Forums
326: Community Forums
327: Statistics
328: Community Forums
329: Community Forums

Staff Online:

No staff members are online!
Trojan Cryzip extorts decryption fee :: Archived
This is a forum for Software related items such as OS', Virus notices, cool or free programs, etc. Gaming software should go in the gaming folder pertaining to the current info.
Post new topic    Revive this topic    Printer Friendly Page     Forum Index ›  Software

Topic Archived View previous topic :: View next topic  
Author Message
Uhu_Rodion
Janitor

Offline Offline
Joined: Nov 14, 2004
Posts: 1437
Location: L'Aquila, Italy
PostPosted: Tue Mar 14, 2006 9:05 pm
Post subject: Trojan Cryzip extorts decryption fee

"A Trojan making the rounds encrypts victims' files and demands a $300 payment to have them decrypted and unlocked, according to a report by security firm Lurhq Threat Intelligence Group."

This so-called "ransomware" Trojan, dubbed Cryzip, is the second of its type to emerge in the past 10 months, following the PGPcoder Trojan. It also is the third such Trojan to appear since 1989.

Lurhq researchers noted Tuesday that the appearance within a year of two encryption Trojans may indicate they are part an emerging trend in malicious software.

"Last year, we saw the PGPcoder, and anything that shows itself to be a viable way to make money, usually people start jumping on the bandwagon after that," said Joe Stewart, senior security researcher for Lurhq.

The Cryzip Trojan will search for files, such as source code or database files, on infected systems. It then uses a commercial zip library to store the encrypted files. Security researchers, however, have yet to determine how the Trojan is distributed, noting it could come from a number of sources, including malicious Web sites, or enter through a previously created backdoor on a virus-infested computer.

The Trojan will overwrite the victims' text and then delete it, leaving only encrypted material that contains the original file name and _CRYPT_.ZIP.

"Unlike the PGPcoder that used a trivial encryption scheme, the zip encryption is stronger. It's harder to go through a list of possible (encryption) keys to get the information back," Stewart said. "But a brute-force attack is still possible, if a user has a copy of the original file. It can be reversed-engineered with a copy of the Trojan."

Cryzip has yet to become a widespread problem. Lurhq said it is aware of only about two dozen infection cases. Increasingly, malicious software writers are becoming more interested in launching low-level attacks in the hopes that it will take longer for security companies to notice their presence and develop a defense.

Users may also be less willing to seek help if it involves disclosing where they might have come across the threat.

The Cryzip writer, who uses an E-Gold account for collecting ransom payments, tells the victims: "Your computer catched our software while browsing illegal porn pages, all your documents, text files, databases was archived with long enough password. You cannot guess the password for your archived files--password length is more than 10 symbols that makes all password recovery programs fail to bruteforce it."

The Trojan writer then goes on to demand that a $300 payment be sent electronically to the E-Gold account.

Stewart advises users to frequently back up their important files, not only to minimize the damage if their system crashes but to reduce damage from an encryption attack.


-> news.zdnet.com/2100-10...ag=nl.e589


Marco
Back to top
View user's profile Visit poster's website MSN Messenger Photo Gallery
Shades
Forum Tree-Rat

Offline Offline
Joined: Mar 07, 2005
Posts: 6478
Location: 3rd Branch up, 'Ye Olde Oak', Green Wood.
PostPosted: Wed Mar 15, 2006 12:39 pm
Post subject: Re: Trojan Cryzip extorts decryption fee

Hang on... if there's an account, it's trackable.
And who's gonna make any online payments to someone writing this stuff anyway?
Geeze talk about unsafe.

_________________
Skwerl's place.

Com-Central's cutest, fluffiest, twitchiest, tail.
CPU > Intel i9-9900k (o/c 4.9GHz); COOLING > BeQuiet! Dark Rock Pro 4;
MOBO > ASUS PRIME Z390-A; RAM > 2x32GB Corsair LPX 2666MHz;
GPU > Gigabyte GEFORCE GTX650Ti PCI-e 3.0 2Gb GDDR5;
AUDIO > Creative X-Fi Xtreme Music (plus - Universal Audio UAD2 Quad Custom accelerator);
HDD > 3x1TB+ M.2. SSDs; LCD > DELL - S2419HGF (1920x1080);
PSU > 650W be quiet Straight Power 11 - 80+ Gold;
CASE > BeQuiet! SILENT BASE 601; OS > Windows 11 Home Advanced (64-bit).
Back to top
View user's profile Visit poster's website ICQ Number
Display posts from previous:   
Post new topic    Revive this topic    Printer Friendly Page    Forum Index ›  Software
Page 1 of 1
All times are GMT - 6 Hours

Archive Revive
Username:
This is an archived topic - your reply will not be appended here.
Instead, a new topic will be generated in the active forum.
The new topic will provide a reference link to this archived topic.