Ransomware victims are not only individual users, but also large companies and institutions. ESET experts point out that when carrying out an encryption attack, cybercriminals show not only cunning, but also extraordinary creativity. Discover the most ridiculous ransomware threats!
Hitler Ransomware
The threat activates after infecting a computer and displays in a separate window; it is an image of the Führer demanding in German that a ransom of 25 euros be paid via a Vodafone top-up code. Despite the threat, the malware does not actually encrypt files; it only removes their extensions and displays an hour-long timer that, once it reaches zero, causes the computer to crash and deletes all files from the system user profile.
Popcorn Time!
This ransomware traps internet users into the cybercriminals' snare by making them infect one another's computers. How does it work? After a computer is infected and its files are encrypted, Popcorn Time offers to decrypt them on one condition: the user must infect two other people, who are then forced to pay the ransom.
In this way, Popcorn Time makes ransomware victims become cybercriminals themselves in order to regain access to their data. To complicate matters even further, this ransomware begins randomly deleting files if an incorrect decryption key is entered four times.
nRansom
Some cybercriminals care about getting the ransom paid, while others simply want to see their victims naked. The ransomware that encouraged people to send their undressed photos was nRansom, which in September 2017 locked computers and promised to unlock them after ten nude photographs were sent to a provided email address.
After the cybercriminal verifies whether the sent photos belong to the same victim, the cybercriminal sends a code that allows the device to be unlocked. Interestingly, the unlock code is absurdly simple. All you had to do was enter “12345” and use Task Manager to end the malicious software's process to get rid of the infection.
Trump Locker
The creators of Trump Locker decided to use the U.S. presidential election to carry out an attack using the image of Donald Trump. What did Trump Locker involve? Right after activation and file encryption, it displayed a message to the victim: “You are hacked!” along with a photo of the current president of the United States. Then it provided information about making a payment in order to regain access to the data.
How can you protect yourself from a ransomware attack?
According to security researchers, ransomware attacks are gaining strength. By Cybersecurity Ventures' estimates, damage caused by ransomware in 2017 cost companies 5 billion dollars. To prevent infection by such viruses, it is worth following a few basic rules provided by Kamil Sadkowski, a threat analyst at ESET:
- Do not open attachments sent in email messages from unknown senders – this is precisely how malicious programs most often penetrate computer drives.
- Regularly back up your data and store it on external data carriers (e.g. USB drives) or in the cloud – this is sometimes the only lifeline for users whose computer and the data stored on it have fallen victim to an encryption threat.
- Remember to update the operating system and programs you use – ransomware exploits software vulnerabilities to get onto its victims' computers.
- Install proven antivirus software – take into account that some solutions have a special feature that tightens computer protection in such a way as to minimize the likelihood of an encryption threat attack. Such a feature is provided, among others, by ESET's programs.