Cyber Security Info

Crypto ransomware on Android

June 5, 2014

Android already has its own police ransomware and now also more dangerous crypto ransomware. The Simplelocker described by Eset encrypts the files on an SD card and demands ransom for their decryption. The demand is in Russian language and the ransom is required to be paid in Ukrainian Hryvnia pointing to the probable area of origin. Interestingly, the Simplelocker includes also features of police ransomware accusing user of viewing child pornography and other illegal content. According to Eset, the ransomware itself is not capable to decrypt the files and awaits command from command and control server hosted on the TOR network. User thus has no guarantee of decryption of his/her files even if the ransom is paid.

