Surely, many have heard or perhaps even come across such a thing as crypto-fiber. This is malware that encrypts user files and requires a ransom for decryption. In Russia, this "scoundrel" has been living for a long time, but European countries have begun to master the methods of sending money for decrypting documents accumulated over the years relatively recently. In the US, there is now a surge of activity, for the last week 12 thousand cars have already been infected. The way the extortionists spread is simple enough to go to the site of your favorite subject while the children are at school and download the player to watch the video, or to open a PDF file with an exploit received from a friend whose email account was hacked and used as a spam e-mail. In general, a lot of them. As a rule, encryption is used for files: *.odt, *.ods, *.odp, *.odm, *.odc, *.odb, *.doc, *.docx, *.docm, *.wps, *.xls, *.xlsx, *.xlsm, *.xlsb, *.xlk, *.ppt, *.pptx, *.pptm, *.mdb, *.accdb, *.pst, *.dwg, *.dxf, *.dxg, *.wpd, *.rtf, *.wb2, *.mdf, *.dbf, *.psd, *.pdd, *.eps, *.ai, *.indd, *.cdr, ????????.jpg, ????????.jpe, img_*.jpg, *.dng, *.3fr, *.arw, *.srf, *.sr2, *.bay, *.crw, *.cr2, *.dcr, *.kdc, *.erf, *.mef, *.mrw, *.nef, *.nrw, *.orf, *.raf, *.raw, *.rwl, *.rw2, *.r3d, *.ptx, *.pef, *.srw, *.x3f, *.der, *.cer, *.crt, *.pem, *.pfx, *.p12, *.p7b, *.p7c, *.pdf, *.tif
Just last week, the National Security Agency of the United Kingdom called on citizens not to pay attackers, since no one gives guarantees for restoring files. But now the US police have fallen for the bait. As the police department of the city Swansea caught the malware is not reported, but it is reported that they were paid 2 Bitcoins (approximately $ 750).
“ We were given 100 hours to pay, otherwise the files will be encrypted forever. The timer began to count down. ”, Said the department. Encryption has been applied to multiple images and text documents. As a result of the payment, the police received the key and successfully decrypted the files.