Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Gpcode.ai - New Ransomware Threat


  • Please log in to reply
No replies to this topic

#1 harrywaldron

harrywaldron

    Security Reporter


  • Members
  • 509 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Roanoke, Virginia
  • Local time:03:31 AM

Posted 16 July 2007 - 08:37 AM

This family of virus takes information found in the infected PC and presents it to the user as a serious violation of privacy. The user is then blackmailed into paying $300 or all private information will be destroyed or disclosed. As Kaspersky notes, actual payment should not be rendered as AV companies work to decrypt any encrypted files and one can never trust that the persons behind these malicious attacks will honor any payments.

GPcode.ai - New Ransomware threat
http://www.viruslist.com/en/weblog?weblogid=208187396
http://www.viruslist.com/en/analysis?pubid=189678219

Some of our non-Russian users told us their documents, photos, archive files etc had turned into a bunch of junk data, and a file called read_me.txt had appeared on their systems. Sadly, the contents of this file were all too familiar: But in the meantime, we'd just like to remind you – if you've fallen victim to Gpcode or any other type of ransomware, you should never pay up under any circumstances. Always contact your antivirus provider and make sure you back up your data on a regular basis.


COPY OF RANSOMWARE INFORMATION

Hello, your files are encrypted with RSA-4096 algorithm 

http://en.wikipedia.org/wiki/RSA

You will need at least few years to decrypt these files without our software. All your private information for last 3 months were collected and sent to us. To decrypt your files you need to buy our software. The price is $300.

To buy our software please contact us at: [REMOVED] and provide us your personal code [REMOVED]. After successful purchase we will send your decrypting tool, and your private information will be deleted from our system.

If you will not contact us until 07/15/2007 your private information will be shared and you will lost all your data.

Glamorous team


BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users