October 23, 2014 by

CryptoWall Surpassing Expectations: Victims Paying Up to $2000 to Get Files Back

You might have heard about the infamous ransomware CryptoLocker. It was something of a prototype for the current wave of ransomware. The premise of the malware is simple. Once it gets onto a victim computer, it starts encrypting certain file types. It then demands ransom from the victim to get the files back. Once the victim pays the ransom, the files are decrypted (for most, but not all victims). It’s worth mentioning that there’s now a number of sites that help decrypt the files for you. The CryptoLocker has been tackled and restrained earlier this year. It’s estimated that the makers of it pocketed about $3,000,000 from ransoms.

As it seems to happen, once a threat is neutralized, many more new, modified, and improved versions tend to spawn up. The CryptoLocker case is no different. Security companies have been following the evolution of a close relative of CryptoLocker, named the CryptoWall. Dell SecureNetworks Senior Researcher Keith Jarvis pointed out back in early September that CryptoWall has  two design flaws that he predicted will prevent it from being as successful as his predecessor:

  • 2048-bit RSA key encryption VS the AES encryption the CryptoLocker was using
  • Payment structure only allowing payments in Bitcoin VS Bitcoin + Money Pak by CryptoLocker

Ironically, that is far from the truth. According to yesterday’s article at Forbes.com, it’s now estimated the creators of Cryptowall are making about $25000 a day from it (victims pay between $200-2000). Also, in the past few weeks, the ransomware increased in the number of infected computers by about 25% to the current 830,000 infected globally.

INFO: In an effort to better serve you, the reader, we’ll be conducting a survey for a few days at the end of each article. This way, we’ll have a better idea of what you like to read and will try to move in that direction. Feel free to add topics that are not listed. Thank you.

The LIFARS team


About the author

Image of Author

LIFARS is the global leader in Digital Forensics and Cyber Resiliency Services. Our experience spans two decades working on high profile events, often in concert with Law Enforcement Agencies around the world. Our proprietary methodology derives directly and indirectly from our experience working with and for U.S. Intelligence Agencies, Interpol, Europol, and NATO. We are solely dedicated to Cyber Resiliency and thus pay close attention to all aspects of our clients’ engagements experience while providing a strategic and integrated array of services to minimum risk and disruption while protecting your brand.

Related articles

US Hospital Coughs Up $55,000 to Hackers after Ransomware Attack

A ransomware attack targeting a hospital in Greenfield, Indiana, has seen hackers make away with...

Read more arrow_forward

47 Million Emails/Day: Necurs Botnet Launches Massive Ransomware Campaign

A cybersecurity firm has revealed it has blocked as many as 47 million emails per day spewed by the...

Read more arrow_forward

Cybercriminals Spoof Millions of Printers, Scanners to Spread Malware

Security researchers have discovered cybercriminals spoofing millions of scanners to launch attacks...

Read more arrow_forward