US Warns Users of Child-Porn Blackmail Ransomware
coondoggie writes "The nasty Trojan known as Citadel malware, which is based on Zeus, has typically been used to extort money from online banking users, but a new variant is making the rounds that tries to get your money by saying you looked at child porn sites and must pay a violation fee to the U.S. Department of Justice. This variation, called Reveton, lures the victim to a drive-by download website, at which time the ransomware is installed on the user's computer, says the U.S. Internet Crime Complaint Center (IC3). Once installed, the computer freezes and a screen is displayed warning the user they have violated United States Federal Law."
Its not like you can call the police and complain about it. You'll instantly get labeled as a pedo and have your kids taken away.
but even if it is only in that area - you have to prove you didn't do it, and even if you can do that you have to do it n court, even if you come away "free" then it is still there that you where once prosecuted for it, and you have to live/survive that process which will more than likely ruin your life as you know it.
'...if only "Jumping to a Conclusion" was an event in the Olympics.'
You are not the target of this scam.
In most places, Illegal porn gets you a a dirty look from the judge and a fine if you are really unlucky. CP on the other hand can get you a 20+ year sentence in the US.
It doesn't matter if the victim watches it or not. The scammers are hoping to exploit the fact that their victims would be reluctant to seek help out of fear of false prosecution, which is not as far fetched as I'd like to. Personally, I'd suggest zero-write to anyone who caught this bug. I wouldn't count on the malware authors not putting incriminating evidence on infected systems and even putting spiteful logic bombs which trigger when you clean the infection. Better paranoid than trying to reason with the pitchfork jury.
My dad's PC had this, although apparently the creators didn't do their homework very well. Belgium having 2 (main) languages the scareware used the wrong language for this part of the country so he hardly understood what needed doing (not everybody speaks both languages). Off course the police logo etc made it look kind of daunting and -although it started up ridiculously slow- once it took over the pc became completely unusable.
It was rather easy to get rid of (safe mode, regedit, hijack-this and then a full scan with Security Essentials -which seemingly had missed it originally!)
The part I don't get is : how do the scammers get to their money (assuming some people are silly enough to pay) without the possibility of being traced back ?
=> shouldn't there be ridiculously easy traces to follow via paysafecard.com ??
=> worst case it should be easy enough to have these -at least!- blocked
If there is one thing to be learned on slashdot, it has to be sarcasm.