
Research shows that cyber criminals also use P2P networks and fake downloads, which contain bundled ransomware infections to proliferate Cryptographic Locker.Ĭryptographic Locker demanding to pay a ransom in order to decrypt the files:ģ0gb of personal documents and files on this computer or device have just been encrypted. Keep your operating system and all installed programs (Java, Flash, etc.) up-to-date. To avoid computer infection with ransomware infections such as these, express caution when opening email messages, since cyber criminals use various catchy titles to trick PC users into opening infected email attachments (for example, 'UPS Exception Notification'). Note that paying the ransom as demanded by this ransomware is equivalent to sending your money to cyber criminals - you will support their malicious business model and there is no guarantee that your files will ever be decrypted. Ransomware infections such as Cryptographic Locker (including CryptoWall, CryptoDefense, CryptorBit, and Cryptolocker) present a strong argument to maintain regular backups of your stored data.

The good news is that this ransomware does not delete the shadow copies of these files, so there is a chance to retrieve them using System Restore. Therefore, the ideal solution is to remove this ransomware virus and then restore your data from a backup. Note that the private key required to decrypt the files is stored by the Cryptographic Locker command-and-control servers, which is managed by cyber criminals. At time of research, there were no tools or solutions capable of decrypting files encrypted by CryptographicLocker. Apart from displaying a window with encryption information, Cryptographic Locker also changes the desktop wallpaper, which reads 'All your files have been encrypted by Cryptolocker'.Īt this time, it is not clear why cyber criminals chose to use the name 'Cryptolocker' rather than 'Cryptographic Locker' within this wallpaper.įiles encrypted by this ransomware are allocated a.

txt files among many others) and demands payment of 0.2 Bitcoin (at time of writing, approximately $100USD) within 24 hours.Ĭyber criminals responsible for releasing this rogue program ensure that it executes on all Windows versions including Windows XP, Windows Vista, Windows 7, and Windows 8. The Cryptographic Locker ransomware virus infiltrates users' operating systems via drive-by downloads, exploit kits, and fake downloads (for example, rogue video players, or fake Flash updates).Īfter successful infiltration, this malicious program encrypts files stored on computers (including.
