Security-X
Forum Security-X => Sécurité Générale => Malwares => Discussion démarrée par: chantal11 le juin 24, 2016, 08:23:26
-
Bonjour,
Une fiche BleepingComputer sur le ransomware Zimbra
Zimbra Ransomware written in Python targets Zimbra Mail Store (http://www.bleepingcomputer.com/news/security/zimbra-ransomware-written-in-python-targets-zimbra-mail-store/)
A new ransomware was discovered that is written in Python and targets the Zimbra enterprise collaboration software. Reported by one of our visitors, this ransomware targets the Zimbra email message store folder and encrypts all of the files located within it. It then creates a ransom note in /root/how.txt that demands 3 bitcoins to get the files back.
When a file is encrypted, it will have the .crypto extension appended to it. For example, 14001-20203.msg would be encrypted as 14001-20203.msg.crypto.
Unfortunately at this time there is no way to decrypt these files for free. If there are any updates related to this ransomware, I will be sure to post it here.