Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

570 of 40,000 infected with ransomware paid the fine

by The Gurus
December 16, 2014
in Editor's News
Share on FacebookShare on Twitter

Only 570 of 40,000 European victims of ransomware paid the Bitcoin fee.
 
Infecting more than 40,000 systems in Europe, TorrentLocker started spreading in early 2014 and encrypted documents, pictures and other files on user’s device, with a demand of up to 4.081 Bitcoins to unlock it, around £950.
 
ESET’s research found that 2.329 UK systems had been infected, and around ten per cent (up to 210) had paid the ransom. Commonly, the ransom was 2 Bitcoins, around £650. In Ireland, none of the 112 victims paid while in the most infected nation, Turkey (11,700), 228 paid.
 
Ken Westin, senior security analyst at Tripwire, said that the statistics did not surprise him,and he believed that the number of infected systems and money made by the groups will increase. “Criminal syndicates have found a way to generate revenue from their exploits, paired with the anonymity of Bitcoin making it difficult if not impossible for law enforcement to go after the culprits,” he said.
 
“We will see more sophisticated versions of ransomware in the future and not just individual’s systems, but also entire networks, once a group finds a way to turn a profit, more groups will follow in short order.”
 
Marc-Etienne Léveillé, researcher at ESET, said that the infection spreads by a victim receiving a spam email with a malicious document and to fool the victims, the attackers have even inserted CAPTCHA images to create false sense of security.
 
“With TorrentLocker, the attackers have been reacting to online reports by defeating Indicators of Compromise used for detection of the malware and changing the way they use Advanced Encryption Standards (AES) from Counter mode to Cipher block chaining mode (CBC) after a method for extracting the key stream was disclosed,” he said.
 
He explained that these changes mean that TorrentLocker victims can no longer recover all their documents by combining an encrypted file and its plain text to recover the key stream.
 
Mark Sparshott, EMEA director at Proofpoint, said: “TorrentLocker’s success stems from the use of advanced longlining and phishing emails to distribute the malware installer in a weaponised attachment or a link to a weaponised website. Proofpoint’s Human Factor report showed just how successful TorrentLocker’s favored themes of Delivery & Order Notifications can be with an average of 1 in 10 recipients clicking these types of malicious links.
 
“As more people shift away from paper copies of key documents to electronic ones, TorrentLocker’s ransom may seem a small price to pay for many victims . As the threat
of advanced phishing still remains unaddressed by most organisations, ransomware like TorrentLocker is likely to increase in 2015.”

 

Tags: attackBitCoinemailRansomware
ShareTweet
Previous Post

Linux users warned of "grinch" privilege escalation flaw

Next Post

Delta fixes flaw which allows passengers to switch to any other boarding pass

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol