ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Trojan 'kidnaps' data

Tom Espiner ZDNet.co.uk

Published: 15 Mar 2006 17:20 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Experts warned computer users on Wednesday of a Trojan that could steal their data and try to sell it back to them.

Zippo-A (also known as CryZip) searches for word documents, database files and spreadsheets, and converts them to password encrypted zip files on the user's computer. A file is then created that instructs users to pay $300 (£170) to an e-Gold account to recover their data.

Antivirus company Sophos said that although there had been no widespread outbreak, it could be part of a trend of "ransomware" — malware that attempts to extort money from users.

"This is most interesting as an extension of a growing trend of Russian ransomware. This is the first time we've seen this in the UK," said Graham Cluley, senior technology consultant at Sophos.

"Companies who have made regular backups may be able to recover easily, but less diligent businesses may be in a quandary about whether to cough up the cash," Cluley said.

Users with infected PCs are instructed that once they have paid, they will be sent a password to decrypt the files. However, affected files can be decrypted using the password C:\Program Files\Microsoft Visual Studio\VC98.

Sophos discovered this key by disassembling the Trojan.

The antivirus company said it had tried to contact e-Gold to let them know a number of their accounts were being used for extortion. Sophos had not heard back from e-Gold.

"The e-Gold accounts may have been set up using a false ID," said Cluley.

e-Gold, an Internet payment service run by US company Gold & Silver Reserve, was unavailable to give ZDNet UK comment at the time of writing.

Sophos had not yet contacted the police.

"All the authorities need to do is follow the money trail. We haven't approached the police about this yet — we normally contact the ISPs involved. With 2,000 new pieces of malware seen each month, law enforcers would just be swamped," said Cluley.

Businesses need to advise users to be extremely careful about which programs they choose to run, and to update with the latest Microsoft patches, according to Sophos.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
129 out of 247 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:





Related Jobs

Server Specialist for Roll Out with Microsoft Gold Partner

Start Monday in a brilliant role with a Microsoft Gold Partner Consultancy client! If you are IMMEDIATELY available and have skills in the following, ...

SENIOR FIELD ENGINEER - SMS / ISA / EXCHANGE - GOLD PARTNER - MIDLANDS

Then read on New opening for a Senior Engineer to work for a leading Midlands based Microsoft Gold Partner. FIELD ENGINEER? STRONG WINDOWS SERVER & ...

VB.net - ASP.net - Microsoft Gold Partner - South West

This is working for a Microsoft Gold Partner who is known for taking on the best .net Developers. Huxley Associates Client is looking for an ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment