Wednesday, March 15, 2006

Cryzip Trojan: gimme $300 or your data is toast!

Cryzip Ransomware Trojan Analysis

A new breed of trojan horse program allegedly encrypts its host PC's data and the only way to decrypt those files is by paying its authors $300. Called Cryzip, this trojan searches the C: drive (except for files in directories named "system" or "system32") for files which it will zip, overwrite with the text "Erased by Zippo! GO OUT!!!", and then delete, leaving only the encrypted zip file with the name original-file-name_CRYPT_.ZIP, where original-file-name is the original file name complete with the file extension.

Now, why am I not remotely alarmed by this news? Oh! I know! I'm using a Mac!

1 comment:

Ade said...

i really need to get a mac (or at least a linux) soon. :(