The US Department of Justice recently declared that it has finally neutralized Cryptolocker; now it has to deal with a new ransomwarespread via Angler Exploit Kit, which has been identified by Windows asTrojan.Win32.Critroni.A. It’s a high severity malware that can prevent users from using their PC or accessing any data on it. Users affected from this malware will receive message to pay ransom to the hackers, which is not a recommended option as it doesn’t guarantee freedom from its menace.
Reassuringly, an advisory published on Microsoft website says that “Microsoft security software detects and removes this threat.”
The ransomware is known as CTB-Locker (Curve-Tor-Bitcoin Locker) in the market and has its command-and-control (C&C)settings hidden on Toranonymizing network. This is what makes Critroni.A especially impressive; as its C&C servers are hidden on Tor network, which essentially is a network designed to secure and obfuscate identity of people using it, it will be a tough task for security agencies to track the threat actors and put a kibosh on the ransomware.
Cyberoam Threat Research Labs is currently studying this malware and shall announce a remedial solution shortly.
Know more about Cyberoam network solutions at www.cyberoam.comand for similar securityalerts subscribe to Cyberoam Blogs.