Author Topic: CryptoLocker - Ransomware, hardcore as stuff.  (Read 2522 times)

CryptoLocker is essentially a virus that encrypts your entire computer and gives you a limited amount of time to pay $300 to gain access to your files back.

The encryption algorithm used is basically uncrackable, and attempting to remove or interfere with the virus will cause your time to end, and you're left with a brick of a PC unless you wipe your drive.

From what I've read, you should be fine as long as you don't download random attachments from emails.

Article: http://www.geek.com/apps/disk-encryptiing-cryptolocker-malware-demands-300-to-decrypt-your-files-1570402/

Wikipedia entry:
Quote
Encrypting ransomware reappeared in 2013 with a worm known as "CryptoLocker". Distributed as either an attachment to a malicious e-mail or as a drive-by download, CryptoLocker encrypts data with the RSA-2048 algorithm on any local or network storage devices that the computer can access. While the public key is stored on the computer, the private key is stored on a command and control server; CryptoLocker demands a payment of US$300 with either pre-paid cash or Bitcoin to recover the key and begin unencrypting files, and threatens to delete the private key if a payment is not received within a certain timeframe.


so i can just do a hard reset and it'll be fine?

holy stuff

Warning - while you were reading 2 new replies have been posted. You may wish to review your post.

....

so i can just do a hard reset and it'll be fine?
A hard reset doesn't decrypt your files. A couple of centuries worth of computation could, though.

If you're downloading email attachments randomly, you deserve it. The only way handicaps are going to learn to be cautious is the hard way.

A hard reset doesn't decrypt your files. A couple of centuries worth of computation could, though.
It's 2048-bit. This will take a couple of eternities.

I've gotta hand it to them, that's a really good scam. loving nasty if you get forgeted by it, but from a technical angle that's a genius idea for a computer scam. Hey, at least they decrypt your stuff if you pay up..


Hey, at least they decrypt your stuff if you pay up..
Yeah, that's surprising.

Yeah, that's surprising.
not really. if they didn't decrypt it, word would get around that they won't give you your files back whether you pay or not, then people would stop paying.

The actual concept is pretty smart, too. The price is only $300 (effectively the price of a new computer). The only people dumb enough to actually download the virus are guaranteed to be dumb enough to not have backed up their files anywhere and are also much more likely to actually pay the sum of money.


The actual concept is pretty smart, too. The price is only $300 (effectively the price of a new computer). The only people dumb enough to actually download the virus are guaranteed to be dumb enough to not have backed up their files anywhere and are also much more likely to actually pay the sum of money.
it connects to connected drives too though, so if you had some time machine-esque setup it would be affected too