It's Raas, not Raes
Have you ever bought any illegal stuff or availed an service from an underground website?If not, here is a offer for you. Underground dark websites often haunts many security researchers, white hat hackers and online users more. In one of the website, ,that even lets a non-technical or a little technical person to deploy and earn profit.As everyone know, ransomware- a malware deployed by a hacker, that lets to lock down the files in victim's computer and demands a ransom that needs to be paid in a stipulated time. Moreover, ransomwares are infected by hackers, who are technically strong in programming and networking.
Recently, a russian-speaking hacker named DevBitox started to sell Dubbed Karmen- a ransomware as a service (Raas) for $175 in dark web forum. This is a malware ,that even allows a non-technical person to hack a vulnerable computer and earn money. This ransomware as a service works similar to other ransomwares by encrypting the files with AES-256 encryption protocol and makes the victim to found system files inacessible, unless he/she pays some ransom to get decryptor key.
Similar to blogger's dashboard, this Raas provides the buyer with web-based user friendly control panel on the Dark Web with a dashboard. The Raas dashboard featured with a running tally displaying number of infections and profit in real time.As soon as the ransomware infects, it encrypts the victim's files and displays a threatening message 'Not to interfere with the malware; otherwise you might lose all the files'.
Apart from all other ransomwares, this malware automatically deletes its decryptor in a sandbox environment or analysis software and makes the security researchers away from investigating it. Till now, around 20 users purchased the copies of Karmen from DevBitox. Though the ' No More Ransomware' project was there to decrypt the files. But we have to protect our files from getting infected.
Here are some of the suggestions recommended:
Always keep regular backups of your important data.
Make sure you run an active anti-virus security suite of tools on your system.
Do not open email attachments from unknown sources.
Most importantly, always browse the Internet safely.