Internet infection holds computer files hostage
Security researchers at San Diego-based Websense Inc. uncovered the unusual extortion plot when a corporate customer they would not identify fell victim to the infection, which encrypted files that included documents, photographs and spreadsheets.
A ransom note left behind included an e-mail address, and the attacker using the address later demanded $200 for the digital keys to unlock the files.
"This is equivalent to someone coming into your home, putting your valuables in a safe and not telling you the combination," said Oliver Friedrichs, a security manager for Symantec Corp. The company said Tuesday the problem was serious but not deemed a high-level threat because there were no indications it was widespread.
The FBI said the scheme was unlike other Internet extortion crimes. Leading security and antivirus firms this week were updating protective software for companies and consumers to guard against this type of attack, which experts dubbed "ransom-ware."
"This seems fully malicious," said Joe Stewart, a researcher at Chicago-based Lurhq Corp. who studied the attack software. Stewart managed to unlock the infected computer files without paying the extortion, but he worries that improved versions might be more difficult to overcome. Internet attacks commonly become more effective as they evolve over time and hackers learn to avoid the mistakes of earlier infections.
"You would have to pay the guy, or law enforcement would have to get his key to unencrypt the files," Stewart said.
The latest danger adds to the risks facing beleaguered Internet users, who must increasingly deal with categories of threats that include spyware, viruses, worms, phishing e-mail fraud and denial of service attacks.
In the recent case, computer users could be infected by viewing a vandalized Web site with vulnerable Internet browser software. The infection locked up at least 15 types of data files and left behind a note with instructions to send e-mail to a particular address to purchase unlocking keys. In an e-mail reply, the hacker demanded $200 be wired to an Internet banking account. "I send program to your e-mail," the hacker wrote.
There was no reply to e-mails sent to that address Monday by The Associated Press.
Ed Stroz, a former FBI agent who now investigates computer crimes for corporations, said the relatively cheap ransom demand only $200 probably was deliberately low to encourage victims to pay rather than call police and to discourage law enforcement from assigning these cases a high priority.
"That's a very powerful threat," Stroz said. "If somebody encrypted your files, you need this stuff now to do your work." FBI spokesman Paul Bresson said more familiar Internet extortion schemes involve hackers demanding tens of thousands of dollars and threatening to attack commercial Web sites, interfering with sales or stealing customer data.
Experts said the Web site where the infection originally spread had already been shut down. They also said the hacker's demand for payment might be his weakness, since bank transactions can be traced easily. "The problem is getting away with it you've got to send the money somewhere," Stewart said.
Comments
- Odd Fellows Hall move 6:13 p.m.
- Man charged in child sexual assault 5:43 p.m.
- Jazz in back of line for free agents 5:36 p.m.
- Dining out: Ruth's Diner 5:04 p.m.
- Tactfully bring up plastic surgery 5:04 p.m.
- Malden's craft made good movies 5:04 p.m.
- Megan Joy looks forward to Utah 5:04 p.m.
- Movie listings 5:04 p.m.
- Box office 5:04 p.m.
- Weekend calendar 5:04 p.m.
- Blazers may offer Millsap a contract
- Utah's top 10: Wealth of recreation
- MWC, WAC rushed into BCS
- Restaurant burns in 3-alarm fire
- O'Connor unhappy Fes not with team
- Send Boozer to the Bulls?
- Keeping golf light on the wallet
- Teen injured in fall from waterfall
- Fatigued Jazz no match for Pacers
- River flow marks birth of sanctuary
- Bronco collecting a galaxy of recruits
138 - Letters: Palin mistreated
136 - Teachers struggle with district cuts
134 - Blazers may offer Millsap a contract
117 - 'Tea party' protesters unhappy
107 - Fairness of BCS debated
81 - Stadium of Fire lights up the 4th
79 - Chaffetz eyes challenging Bennett
72 - Millsap not franchise player
70 - Services bids farewell to Jackson
70
Through the years, I've always raised eyebrows whenever I tell people...
The recent Poly camp in Bountiful opened the eyes of recruiters to at...
No conservatives writing about missile "Kumbaya?" Tell us how weak Obama is...
The number of cosponsors is up to 250. Sorry for the mistake.
Enlighten us, what else does this bill do? Whether or not these...
it happened from 1pm - 3pm
An ancient proverb states: he that giveth to the rich shall surely come to...
Not politically correct and also pretty ignorant, but I've come to expect...
9:23 a.m Paul Krugman disagrees with you. When he advocated for the creation...
More greed for more entitlements! Who will pay for this greed? Our...
Thomas is great shot blocker. I love his intensity and determination in every...
American Legion has some great talent, dont take anything away from them...


You can be the first to comment on this story.