Home / Software & Gaming / Security / Breaking Bad themed ransomware is making the rounds

Breaking Bad themed ransomware is making the rounds

Some hackers have gone ahead and cooked up Breaking Bad themed ransomware, which is currently affected a few people over in Australia. The new malware, which encrypts a PC's images, videos and documents, was recently discovered by Symantec.

The ransomware is named Trojan.Cryptolocker.S. Once a user is affected, their files will be encrypted and a ransom message will be displayed on the screen, demanding $1000 AUD (around £500) to restore access to the PC. The ransom message uses the Los Pollos Hermanos branding, which is taken straight out of Breaking Bad. Additionally, the email address tied to the ransom is: theonewhoknocks@mailinator.com.

breaking-bad-malware-

“We believe that the crypto ransomware uses social engineering techniques as a means of infecting victims. The malware arrives through a malicious zip archive, which uses the name of a major courier firm in its file name”, the Symantec blog post reads.

A zip file called PENALTY.VBS leads to the ransomware being downloaded on to the victim's computer. A pdf file is also downloaded and opened which attempts to trick the user in to thinking that there was nothing malicious about the file originally downloaded.

“The malware encrypts files using a random Advanced Encryption Standard (AES) key. This key is then encrypted with an RSA public key so that victims can only decrypt their files by obtaining the private key from the attackers.”

Once the ransomware has infected a PC the only way to decrypt the files with the private key. Once again, the moral of the story is to be aware of these types of malware and be vigilant when checking email attachments and files before downloading, opening or installing anything.

Discuss on our Facebook page, HERE.

KitGuru Says: As always, the best thing to do with these sorts of things is to raise awareness, that way more people can protect themselves from being scammed.

Via: The Inquirer

Become a Patron!

Check Also

Marvel Rivals has a major security issue enabling Remote Code Execution

A Remote Code Execution exploit has been discovered in Marvel Rivals, allowing hackers to remotely spread malware through the game.

One comment

  1. you know Im tempted to say that anyone who is stupid enough to open an attchment from someone they dont know, or opening an attchement from an e-mail with no text deserves what they get…
    (this doesnt include people above 60 who arent of this generation and are excused from not knowing this)

We've noticed that you are using an ad blocker.

Thank you for visiting KitGuru. Our news and reviews teams work hard to bring you the latest stories and finest, in-depth analysis.

We want to be as informative as possible – and to help our readers make the best buying decisions. The mechanism we use to run our business and pay some of the best journalists in the world, is advertising.

If you want to support KitGuru, then please add www.kitguru.net to your ad blocking whitelist or disable your adblocking software. It really makes a difference and allows us to continue creating the kind of content you really want to read.

It is important you know that we don’t run pop ups, pop unders, audio ads, code tracking ads or anything else that would interfere with the KitGuru experience. Adblockers can actually block some of our free content, such as galleries!