Connect with us

Hi, what are you looking for?

HEADLINES

GandCrab is most widely distributed ransomware of the moment

The ransomware is, for the moment, the most prolific ransomware in circulation. In many ways, its operation is very similar to other ransomware, but its ransomware-as-a-service business model seems to have propelled it forward.

Sophos published a SophosLabs Uncut report about the widely disseminated malware, Gandcrab.

The ransomware is, for the moment, the most prolific ransomware in circulation. In many ways, its operation is very similar to other ransomware, but its ransomware-as-a-service business model seems to have propelled it forward.

GandCrab appeared just over a year ago, promoted on public websites but sold exclusively through the dark web. Since then, the ransomware has developed a large pool of customers, and an unfortunately large pool of victims as well.

The ransomware may owe some of its early success to its unique software licensing scheme. For $100, neophyte ransomware crime lords could build a criminal fiefdom of up to 200 victims in a two month period, working their way up to earning enough to afford more premium-rate services and features.

Advertisement. Scroll to continue reading.

In essence, the GandCrab creators provide a criminal franchise system. The business model for GandCrab gives the franchisee the option of choosing their ransom amount, among other features. Some victims report ransoms as low as $300 but they can run an order of magnitude higher.

Initially delivered via RIG exploit kit, once licensees began using the ransomware, they chose whatever distribution method suited them best. By a month later, malicious spam began to appear with malicious office documents that, when opened, delivered GandCrab to victims. The malware itself uses a deviously clever fileless approach to execute itself and encrypt the victim’s files. It has an effective countermeasure to traditional antivirus software, which would not be able to detect or clean the (conspicuously absent) malicious file.

For a more detailed report, please go to SophosLabs Uncut. Sophos leverages on-demand curated threat intelligence from SophosLabs and machine learning to rapidly detect, prioritize, investigate and respond to incidents. With Sophos Synchronized Security, companies can better manage and defend their network thanks to integration between endpoint and network solutions. The latest releases of XG Firewall and Intercept X with EDR are now available on Sophos Central’s cloud management platform.

Advertisement. Scroll to continue reading.
Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

Ultra is built using Apple’s innovative UltraFusion packaging architecture, which links two M3 Max dies over 10,000 high-speed connections that offer low latency and...

HEADLINES

Since its launch in 2018, Call for Code has rallied developers globally to come together and create innovative solutions to help solve the world's...

HEADLINES

In 2024, Globe blocked 3,096 child pornography domains or those containing child sexual abuse and exploitation materials (CSAEM), a slight increase from 3,047 domains restricted...

HEADLINES

Catch j-hope’s electrifying performance and share your real-time experience of the ‘HOPE ON THE STAGE’ in MANILA for two straight nights, powered by Smart...

HEADLINES

With petabytes of data at its disposal, Smart aims to enhance customer experiences through A.I.-powered applications. Smart will use AWS’s services to unify Smart’s...

HEADLINES

As one of Coursera for Campus’ top three customers globally, iPeople is advancing its mission to equip students and faculty across its six universities...

HEADLINES

Converge SVP and Corporate Information Security Officer Andrew T. Malijan said that misinformation and politically-motivated content may likely increase during this campaign season, and...

HEADLINES

This collaboration will develop and deploy solar photovoltaic, battery storage, and hybrid energy solutions to support the growing demand for sustainable power in industrial,...

Advertisement