Saturday 4 May 2024
 
»
 
»
Story

Djenane... emails infected with a trojan downloader.

New strain of ransomware hits GCC firms

DUBAI, January 22, 2015

A new variant of the ransomware family is affecting organizations within the GCC and in particular the UAE, said top IT security firm Eset, adding that multiple incidents have been recorded in a short period of time.

Dubbed CTB-Locker, the ransomware encrypts and locks users' data until a ransom of 8 Bitcoins, equivalent at present to $1680, is paid to the attackers.

Mohamed Djenane, security specialist, ESET Middle East said: “It starts with a simple email. Organisations in the UAE are getting targeted email, mainly having a subject containing the word 'fax'. This email contains an attachment infected with a trojan downloader.”

Once downloaded by an unsuspecting victim, the trojan downloader connects to the internet and downloads the main CTB-Locker malware. On execution, CTB-Locker will encrypt specific file formats on the infected device, lock the users screen and display a ransom message.

The new ransomware which was identified by ESET researches has been observed all over the world with the highest density in Europe and Latin America. There is a big similarity between CTB-Locker and Crypto-Locker, an infamous piece of ransomware that has been making rounds in the cyber community since September 2013. While they both operate in the same manner in terms of encrypting the victim’s machine, CTB-Locker uses a different type of encryption algorithm.

ESET has offered the following advice to users and organizations to eliminate or at least reduce the impact of the new CTB-Locker attack:

1. Have any data backup mechanism, whether it is done manually or by implementing a backup solution. This will eliminate the need to pay anything since you already have a backup copy of your data.

2. Keeping your operating system and antivirus solution up to date.

3. Never open email attachments if you are not 100 per cent sure about the identity of the sender.

4. Extensive awareness for employees and cyber education as per the best security practices.

5. Early report for any suspicious activities to the IT team. – TradeArabia News Service




Tags: ESET | Trojan |

More IT & Telecommunications Stories

calendarCalendar of Events

Ads