Magento Stores Targeted by New KimcilWare Ransomware

  • 29 March 2016
  • 2 replies
  • 154 views

Userlevel 7
Badge +54

Magento admins face new threat in KimcilWare

 
                                      http://i1-news.softpedia-static.com/images/fitted/340x180/magento-stores-targeted-by-new-kimcilware-ransomware.jpg
 
Mar 29, 2016 21:10 GMT  ·  By Catalin Cimpanu Security researchers from the MalwareHunterTeam have stumbled upon a new type of ransomware targeting Web servers, and more specifically Magento shops.
 
Called KimcilWare, the ransomware encrypts your Magento store files, appending the ".kimcilware" extension at the end of each file, rendering the store useless.
 
Additionally, the ransomware also adds its own index file to the server, printing out a black page that replaces the store homepage, reading "Webserver Encrypted" as a headline in red, and then the ransom note that says "Your webserver files has been encrypted with a unix algorithm encryptor. You must paw 140$ to decrypt your webserver files. Payment via Bitcoin only.
 
Full Article

2 replies

Userlevel 7
Badge +62
Another nasty Ransomeware ...looks like the article has some precaution points in having strong passwords and update to the latest Magento stores...stay tuned. The fact it only wants Bitcoins for payment is another sorry leaching Ransomeware!
Userlevel 7
Am starting to lose track of what ransomeware is out there as there seems to be such a proliferation of these nasty apps. And it seems that the predictions at the end of 2015 that 2016 would eb the year that ransomware tried its luck against the corporate & business networks seems to be being borne out...unfortunately. :(

Reply