Jump to content

Android file-encrypting ransomware app now a reality


Recommended Posts

Android file-encrypting ransomware app now a reality

After a number of false alarms, Simplocker, the first true file-encrypting ransomware app, has now landed on Android and it is a nasty one.

Recent pseudo-malware apps that landed on Android had hitherto been fake ones, betting on the user's gullibility to extract a ransom.

Android defender for example threatened to encrypt files but only managed to display a lockscreen.

Security vendor ESET recently discovered this one and hides its location by using a C&C (command and control) server hosted on a TOR domain.

Malware researcher Robert Lipovsky wrote in a post on ESET's blog that the malware is likely to be a proof-of-concept and "doesn't come close to Cryptolocker on Windows".

Once on the victim's device, it scans the SD card for a number of file types, encrypts them and demand a ransom to decrypt them again.

Lipovsky says that the prevalence of the malware, which emanates from Russia, is low in the wild and likely to be found outside the official Google Play.



Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Unfortunately, your content contains terms that we do not allow. Please edit your content to remove the highlighted words below.
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Create New...

Important Information

By using this site, you agree to our Terms of Use.