CRYPTOLOCKER RANSOMWARE

ImageSource

CryptoLocker is a malicious cyber threat, it first appeared in September 2013.
The ransomware spreads itself through email with a password protected ZIP file claiming to be from a logistic firm.

It then uses social engineering techniques to trick user into running it. As soon as the victim opens it using password provided, the Trojan goes memory resident on the computer and saves itself in the user profile.

The Trojan generates a random symmetric key for each file it encrypts with the
AES algorithm compromised computer and then prompts the user to purchase a password in order to decrypt.

**Operation Tovar was carried out and CryptoLocker was isolated by the seizure of the GameOver ZeuS botnet.

Comments

Popular posts from this blog

SATANA RANSOMWARE

WANNACRY RANSOMWARE