Ransomware is a known worm to take control of victim's machine and ask for an ransom amount later so as to give them access to their machine. Ransomware is spreading through Skype instant messages these days, it tricks user by displaying them a message saying "lol is this your new profile pic?" along with a link. As soon as a user click on that link he downloads a ZIP file, this ZIP filed contains executable file and installs a variant of known Dorkbot worm. Dorkbot creates a backdoor via "Blackhole" allowing criminals and hackers to infect one’s machine. In short it allows remote attacker to install ransomware through that backdoor. Once ransomware gets installed on that machine, it will lock the victim’s computer via password or encryption and will ask for a ransom to unlock it. Many people have reported that it demands payment of $200 within 48 hours and threaten them saying “All files on the system will be deleted within 48 hours, if the payment is not made”
Below is the screen of a victim’s machine affected by Ransomware, it says that computer has been used to nefarious nature, illegal pornography, gambling, and illegal drugs websites. It threatens victim to send that information to "Special Department of US government" via a program called "System Cleaner". Claiming that program is developed by U.S. government in order to prevent crime and illegal activity on the Internet. Other than this it also employs click fraud by clicking on ads to generate revenue for its authors.
Since people have started reporting it to skpye, they had assured that they will investigate in to the matter and might upgrade Skype as well. They said that they are aware of the malicious activity and they have already started working on it.
Bookmarks