NewsBTC
No Result
View All Result
  • Cryptocurrency News
    • Bitcoin News (BTC)
    • Ethereum News (ETH)
    • Ripple News (XRP)
    • Shiba Inu News (SHIB)
    • Cardano News (ADA)
    • Dogecoin News (DOGE)
    • Solana News (SOL)
    • Litecoin News (LTC)
    • Avalanche News (AVAX)
    • Polygon News (MATIC)
  • Crypto Prices
    • Binance Coin (BNB) Price
    • Bitcoin (BTC) Price
    • Cardano (ADA) Price
    • Chainlink (LINK) Price
    • Dogecoin (DOGE) Price
    • Ethereum (ETH) Price
    • Litecoin (LTC) Price
    • Polkadot (DOT) Price
  • Crypto Resources & Directory
  • All Crypto
  • Play GamesTry
  • CasinosTry
Breaking News: Bitcoin Outlook Post Fed's 0.25% Rate Cut: Historical Patterns And Predictions
  • Cryptocurrency News
    • Bitcoin News (BTC)
    • Ethereum News (ETH)
    • Ripple News (XRP)
    • Shiba Inu News (SHIB)
    • Cardano News (ADA)
    • Dogecoin News (DOGE)
    • Solana News (SOL)
    • Litecoin News (LTC)
    • Avalanche News (AVAX)
    • Polygon News (MATIC)
  • Crypto Prices
    • Binance Coin (BNB) Price
    • Bitcoin (BTC) Price
    • Cardano (ADA) Price
    • Chainlink (LINK) Price
    • Dogecoin (DOGE) Price
    • Ethereum (ETH) Price
    • Litecoin (LTC) Price
    • Polkadot (DOT) Price
  • Crypto Resources & Directory
  • All Crypto
  • Play GamesTry
  • CasinosTry
Bitcoin News
No Result
View All Result
Breaking News: Bitcoin Outlook Post Fed's 0.25% Rate Cut: Historical Patterns And Predictions

Hackers Adopt SaaS Model to Support Bitcoin Ransomware Schemes

NewsBTC
NewsBTC
Last Updated: June 11, 2024 7:35 am
3 mins read
Ransomware demanding bitcoin

Reason to trust

Strict editorial policy that focuses on accuracy, relevance, and impartiality
Created by industry experts and meticulously reviewed
The highest standards in reporting and publishing
How Our News is Made

Strict editorial policy that focuses on accuracy, relevance, and impartiality

Ad discliamer

Morbi pretium leo et nisl aliquam mollis. Quisque arcu lorem, ultricies quis pellentesque nec, ullamcorper eu odio.

The Year 2015 saw cyber criminals implement new strategies to extort money, many taking their ransoms in bitcoin. The one that got everybody’s attention as the year came to a close was Ransom32 – a JavaScript-based ransomware which freezes the files in a user’s computer until a ransom is paid in bitcoin.

The revelation was first made on BleepingComputer.com by an infected user who complained that he could not access the data on his computer, including pictures, documents, and mp3.

Bleeping Computer editor Lawrence Abrams told BBC.com that the infection “was designed for those that lacked the technological skill to create their own brands of malware.”

Security expert Graham Cluley also told BBC:

“By turning their ransomware into a sellable service, the criminals behind Ransom32 are providing an opportunity for other hackers to easily launch attacks that will encrypt users’ documents, including personal photographs, movies and more.“

Security expert Fabian Wosar of Emsisoft and security researcher xXToffeeXx analyzed this Ransomware as a Service or RaaS, and have brought to light some important facts about the infection.

Key Points About Ransom32

  • It is located on an underground TOR network, and can be downloaded when a bitcoin address is submitted.im1
  • After a user submits the bitcoin address, he is presented with an administration panel, where he can configure the amount of bitcoin in ransom, and get access to data such as the number of people who already paid the ransom.

im2

  • The program is the first virus written in HTML, CSS and JavaScript languages.
  • The malware developers demand a 25% cut of any ransom collected the user downloading the virus and send the rest to the bitcoin wallet address supplied.

How Does it Work?

After finishing the configuration of Ransom32, the Download client.scr button at the bottom of the page needs to be hit. The download is a 22MB, self-extracting RAR file which unpacks into several files totaling over 67MB. The files are then extracted into C:UsersUserAppDataRoamingChromeBrowser, along with a shortcut in StartUp Programs so that the ransomware initiates when the computer boots up.

Some of the extracted files are:

  • Chrome – Holds the General Public License agreement.
  • chrome.exe – A packaged NW.js file that contains the malware code.
  • g – This file stores important information required by the malware. This includes the bitcoin ransom amount, the bitcoin address being used, and an error message if the configuration was enabled to do so.
  • rundll32.exe – A TOR executable file that links the malware with the TOR Command and Control server.
  • s.exe – This creates the shortcut in the Startup folder.

The malware encrypts the files of the users using Advanced Encryption Standard (AES) and decrypts them only after the asked ransom is paid in bitcoin. Ransom32 specifically targets commonly used file extensions such as .jpg, .jpeg, .tif, .gif, .wma, .avi, .mp4, and .docx. An extensive list of targeted extensions can be found here.

In a blog post titled Meet Ransom32: The first JavaScript ransomware, security expert Fabian Wosar also gave an extensive review of the malware, reiterating that the best protection against the attack remains a solid and proven backup strategy.

Apart from maintaining a backup of important files, users are advised to install the best anti-malware and internet security programs to stay protected from an increasing number of cyber attacks. They might not provide 100% cover but will definitely thwart such malicious attacks with their strong defense.

Image Credits: Bleeping Computers

Tweet123Share196ShareSend
NewsBTC
NewsBTC

NewsBTC

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Disclaimer: The information found on NewsBTC is for educational purposes only. It does not represent the opinions of NewsBTC on whether to buy, sell or hold any investments and naturally investing carries risks. You are advised to conduct your own research before making any investment decisions. Use information provided on this website entirely at your own risk.

Related News

Raoul Pal Voorspelt Altseason 2026: 10x Voor Cardano

Macro-investeerder Raoul Pal gooit opnieuw olie op het vuur. In recente optredens voorspelt hij een altseason in 2026 waarin Cardano...

Lars Diederiksen 14 hours ago
Ethereum

If This Ethereum Bear Flag Pattern Holds, ETH Price Could Be On Its Way To $2,400

Since early October, when the Ethereum price began its dive into bearish territory, it has struggled to regain any of...

Opeyemi Sule 16 hours ago
Bitcoin

Bitcoin Bullish Structure Weakens As Inter-Exchange Liquidity Touches Red Zone – Details

The Bitcoin market is experiencing a gradual trend reversal following weeks of prolonged price correction between October and November. However,...

Semilore Faleti 18 hours ago
Load More

Reason to trust

Strict editorial policy that focuses on accuracy, relevance, and impartiality
Created by industry experts and meticulously reviewed
The highest standards in reporting and publishing
How Our News is Made

Strict editorial policy that focuses on accuracy, relevance, and impartiality

Ad discliamer

Morbi pretium leo et nisl aliquam mollis. Quisque arcu lorem, ultricies quis pellentesque nec, ullamcorper eu odio.

Related News

Ethereum

Ethereum Holds Support As Smart Money Steps In – What This Means For Price

Godspower Owie 7 hours ago
Bitcoin

Bitcoin Macro Retracement Meets Mid-Range Battle – Will Bulls Reclaim Momentum?

Godspower Owie 10 hours ago
Bitcoin

Bitcoin Faces Immediate Key Levels At $76,000 And $99,000 — What Comes Next?

Semilore Faleti 14 hours ago

Premium Sponsors

Press Releases

  • イーサリアム 今後の価格見通し:4,400ドルで上値を抑えられる一方、ETF資金流入が加速

    イーサリアム...

    18 hours ago
  • ビットコイン 今後の価格見通し:米議会が SEC に 401(k) での BTC 解禁を迫る、12.5 兆ドルの年金資金は新高値を後押しするのか

    ビットコイン 今後の価格見通し:米議会が...

    18 hours ago
  • 新しい仮想通貨:長期的な成長ポテンシャルが注目される有力プロジェクト

    ...

    18 hours ago
  • リップル 今後の価格見通し:ソラナ統合が示すXRPの新展開、DeFi流動性は5ドル到達を後押しするか

    リップル...

    18 hours ago
  • シバコイン 今後の価格見通し:SHIBコミュニティに広がる大規模詐欺警告、2026年を占う前兆か

    シバコイン...

    18 hours ago

Newsletter

About Us

NewsBTC is a cryptocurrency news service that covers bitcoin news today, technical analysis & forecasts for bitcoin price and other altcoins. Here at NewsBTC, we are dedicated to enlightening everyone about bitcoin and other cryptocurrencies.

We cover BTC news related to bitcoin exchanges, bitcoin mining and price forecasts for various cryptocurrencies.

Disclaimer: The information found on NewsBTC is for educational purposes only. It does not represent the opinions of NewsBTC on whether to buy, sell or hold any investments and naturally investing carries risks. You are advised to conduct your own research before making any investment decisions. Use information provided on this website entirely at your own risk.

Company

  • About Us
  • Advertising
  • Contact Us
  • Privacy Center

Social

© 2025 NewsBTC. All Rights Reserved.

  • Cryptocurrency News
    • Bitcoin News (BTC)
    • Ethereum News (ETH)
    • Ripple News (XRP)
    • Shiba Inu News (SHIB)
    • Cardano News (ADA)
    • Dogecoin News (DOGE)
    • Solana News (SOL)
    • Litecoin News (LTC)
    • Avalanche News (AVAX)
    • Polygon News (MATIC)
  • Crypto Prices
    • Binance Coin (BNB) Price
    • Bitcoin (BTC) Price
    • Cardano (ADA) Price
    • Chainlink (LINK) Price
    • Dogecoin (DOGE) Price
    • Ethereum (ETH) Price
    • Litecoin (LTC) Price
    • Polkadot (DOT) Price
  • Crypto Resources & Directory
  • All Crypto
  • Play Games
  • Casinos
Advertise

© 2025 NewsBTC. All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Center or Cookie Policy.