uninstallmacapp.com News
  • Home

Swift-based ransomware attacks macOS pirates through false decryption promise

  • By admin
  • Feb-27-2017
  • Tech News
  • 0 Comments.

A new ransomware created in Swift encrypting the user’s files and demanding a payment has appeared , targeting macOS users who don’t want to pay for legitimate software, according to AppleInsider’s report. It’s disguised as common apps like Adobe CC or Office for Mac 2016 and spreads. Once infected, the computer’s file and data will be encrypted, and the user will be required for payment before unlocking them. In worse cases, even if you’ve paid as required, your files remain unavailable.

1

Marc-Etienne M.Léveillé, one of the security researchers, discovered that the ransomware was firstly circulated via BitTorrent sites and called “Patcher.” It poses as a crack for pirates to get around copy protection and licensing systems used in popular software suites.

Currently it has been found to be posing as ways to unlock Microsoft Office for Mac 2016 and Adobe Premiere Pro CC 2017. When extracted from the archive and executed, the ransomware opens up a window advising users to press the start button to patch the pirated software. If clicked, it will spread around a “Read me” file to various user directories, before encrypting all other user files using a randomly-generated 25-character key in an archive, and deleting the original files.

The researcher notes the ransomware is “generally poorly coded” in various ways. Produced using Swift, the application’s window is impossible to open if it is closed, while code to try and use Disk Utility to null the free space on the root partition uses the wrong path to the tool.

2

There is no code in the malware that sends the key to the operator, so there is no possibility of providing the “service” of decrypting the files for the user, while the length of the key also suggests a brute force attack would take too long to accomplish.

Researcher Léveillé suggests having a current offline backup of all important data, as well as security software, to help protect against similar threats.

Comments

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <s> <strike> <strong>

← Previous Post Next Post →

Recent Posts

  • Supplementary update of macOS Mojave: bug fixes for the system and Safari 14
  • New Malware on Mac: Spread through Xcode Project
  • Apple releases the first public beta of macOS Big Sur
  • A new Intel-based iMac probably released this week: design remains unchanged
  • Supply chain expects MacBook shipments to grow by more than 20% in the third quarter

Recent Comments

    Archives

    • October 2020
    • August 2020
    • July 2020
    • June 2020
    • May 2020
    • April 2020
    • March 2020
    • February 2020
    • January 2020
    • December 2019
    • November 2019
    • October 2019
    • September 2019
    • August 2019
    • July 2019
    • June 2019
    • May 2019
    • April 2019
    • March 2019
    • December 2018
    • November 2018
    • October 2018
    • September 2018
    • August 2018
    • July 2018
    • June 2018
    • September 2017
    • August 2017
    • July 2017
    • June 2017
    • May 2017
    • April 2017
    • March 2017
    • February 2017
    • January 2017
    • December 2016
    • November 2016
    • October 2016
    • September 2016
    • August 2016
    • July 2016
    • June 2016
    • May 2016
    • April 2016
    • March 2016
    • February 2016
    • January 2016
    • December 2015
    • November 2015
    • October 2015
    • September 2015
    • August 2015
    • July 2015

    Categories

    • gaming news
    • life news
    • Remove Guides
    • Tech News
    • Uncategorized

    Meta

    • Log in
    • Entries RSS
    • Comments RSS
    • WordPress.org
    About This Site

    A cras tincidunt, ut tellus et. Gravida scel ipsum sed iaculis, nunc non nam. Placerat sed phase llus, purus purus elit.

    Archives Widget
    • January 2010
    • December 2009
    • November 2009
    • October 2009
    Categories
    • Entertainment
    • Technology
    • Sports & Recreation
    • Jobs & Lifestyle
    Search

    Powered by WordPress  |  Business Directory by InkThemes.