Pokemon GO Ransomware Installs Windows Admin Backdoor Account

JMH

Emeritus, Contributor
Joined
Apr 2, 2012
Posts
7,197
It was only a matter of time until some clever hacker decided to leverage Pokemon GO's huge success to create Pokemon-themed ransomware.

The bad news is that the person who developed this new threat is not happy with just delivering a basic crypto-ransomware but is also interested in data exfiltration scenarios as well as creating a backdoor account on the infected devices.

Discovered by security researcher Michael Gillespie and broken down by Bleeping Computer, this new ransomware appears to be currently under development, gearing up for a larger distribution campaign.

Ransomware disguised as PokemonGo.exe file

The person behind this ransomware is distributing the threat as a Windows executable called PokemonGo.exe, which includes an icon of a very adorable Pikachu.
Pokemon GO Ransomware Installs Windows Admin Backdoor Account
 

Has Sysnative Forums helped you? Please consider donating to help us support the site!

Back
Top