{"id":8593,"date":"2019-09-17T11:40:33","date_gmt":"2019-09-17T09:40:33","guid":{"rendered":"https:\/\/www.ebas.ch\/ransomware-verschluesselungstrojaner\/"},"modified":"2024-01-09T10:35:16","modified_gmt":"2024-01-09T09:35:16","slug":"ransomware-encryption-trojans","status":"publish","type":"page","link":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/","title":{"rendered":"Ransomware (encryption Trojans)"},"content":{"rendered":"<div id=\"av_section_1\" class=\"avia-section av-3osj-8edf3c5c57d6f444e32a620ab19c7a5a main_color avia-section-default avia-no-border-styling  avia-builder-el-0  avia-builder-el-no-sibling  avia-bg-style-scroll container_wrap fullsize\"><div class=\"container av-section-cont-open\"><main role=\"main\" itemprop=\"mainContentOfPage\" class=\"template-page content  av-content-full alpha units\"><div class=\"post-entry post-entry-type-page post-entry-8593\"><div class=\"entry-content-wrapper clearfix\">\n\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-jo2xz-588590f8e0c3dd5b36ff4df9077018fa\">\n.flex_column.av-jo2xz-588590f8e0c3dd5b36ff4df9077018fa{\nborder-radius:0px 0px 0px 0px;\npadding:0px 0px 0px 0px;\n}\n<\/style>\n<div class=\"flex_column av-jo2xz-588590f8e0c3dd5b36ff4df9077018fa av_three_fourth  avia-builder-el-1  el_before_av_one_fourth  avia-builder-el-first  first flex_column_div av-zero-column-padding  \"><section class=\"av_textblock_section av-jvmci8ju-0d4bf5e1ee8402a49397872c2bc85092 \" itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\"><div class=\"avia_textblock\" itemprop=\"text\"><p class=\"ebas-lead\">Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users&rsquo; files, to only grant them access again once a &ldquo;ransom&rdquo; has been paid &ndash; well, just maybe grant them access...!<\/p>\n<div class=\"ebas-gist\">\n<h4>How to protect yourself against ransomware:<\/h4>\n<ul>\n<li><strong>Regularly create a <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Back-up&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Data back-up, where electronic information (data) is copied to an external storage medium (e. g. an external hard drive). Back-ups are generally run at regular intervals.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>back-up<\/span> copy of your data.<\/strong><br>\nMake sure to disconnect the medium used to hold your <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Back-up&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Data back-up, where electronic information (data) is copied to an external storage medium (e. g. an external hard drive). Back-ups are generally run at regular intervals.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>back-up<\/span> copy from your computer once the <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Back-up&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Data back-up, where electronic information (data) is copied to an external storage medium (e. g. an external hard drive). Back-ups are generally run at regular intervals.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>back-up<\/span> process has finished. Otherwise, it is possible for data on the <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Back-up&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Data back-up, where electronic information (data) is copied to an external storage medium (e. g. an external hard drive). Back-ups are generally run at regular intervals.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>back-up<\/span> medium to become encrypted in case of a &ldquo;<span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span>&ldquo; infection, too.<\/li>\n<li><strong>Always keep all software and plug-ins installed up-to-date.<\/strong><br>\nEnsure that all installed software, apps as well as web <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Browser&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;A special computer program to display websites on the World Wide Web (WWW) or data and documents in general. The most important browsers used on the Internet are Google Chrome, Mozilla Firefox, Microsoft Edge and Apple Safari.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>browser<\/span> plug-ins are always up to date. Whenever possible, always use the automatic <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Update&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;program actualisation which often also repairs bugs in software. Most updates are offered free-of-charge for download by software manufacturers on their website, or distributed automatically.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>update<\/span> feature of your respective software programs.<\/li>\n<li><strong>Be careful with suspicious e-mails.<\/strong><br>\nCaution is called for with any e-mails you receive out of the blue, even if these seem to originate from senders you know. Don&rsquo;t follow any instructions in the text, don&rsquo;t open any attachments, and don&rsquo;t follow any links.<\/li>\n<li><strong>Use antivirus software.<\/strong><br>\nYour antivirus software must be kept continuously updated with the help of automatic updates. Otherwise there is a risk that newly developed <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Malware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;The term is made up of the terms &amp;quot;malicious&rdquo; and &amp;quot;software&rdquo;. Malware is the generic term for software which executes malicious functions on a device (such as viruses, worms, Trojans, ransomware).&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>malware<\/span> is not recognized.<\/li>\n<\/ul>\n<\/div>\n<h3>Operating principle<\/h3>\n<p>It can happen quite quickly: Simply opening a malicious e-mail attachment or an infected website might just possibly be enough for an encryption <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Trojan Horse&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Malware disguising itself as something useful or a game, however with completely different objectives in reality. Trojans can for instance capture, change or delete passwords or other confidential data, or transmit them to an attacker.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Trojan<\/span> to <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Worm&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Worms, just like viruses, are no longer such a widespread type of malware today. A worm is a small program which distributes copies by itself, e. g. via e-mail, SMS or via a vulnerability.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>worm<\/span> its way into your system and to inexorably render your data useless by deleting or encrypting them.<\/p>\n<p>Once files on a computer have been encrypted by this <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span>, victims are shown a &ldquo;blocking screen&rdquo;. This asks victims to pay a certain sum of money in the shape of a <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Cryptocurrency&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Cryptocurrencies are digital means of exchange\/payment or assets using cryptographic techniques to ensure a payment system is secure. When systems are being paralysed by malware, cyber-criminals usually demand a cryptocurrency payment (e.&amp;nbsp;g. bitcoins) to make tracing impossible.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>crypto<\/span>-currency to the attackers, for them to release encrypted files so they can be used again (ransom). Due to the use of an Internet currency, it becomes more difficult to trace authorship of the attack.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-large wp-image-4199\" src=\"https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-1030x777.png\" alt=\"\" width=\"1030\" height=\"777\" srcset=\"https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-1030x777.png 1030w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png 300w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-768x580.png 768w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-705x532.png 705w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware.png 1468w\" sizes=\"auto, (max-width: 1030px) 100vw, 1030px\"\/><\/p>\n<p>When spreading their <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span>, cyber-criminals particularly attack companies since they have large volumes of business-critical data and are more prepared to pay high sums of ransom money to avert data losses which would threaten their existence. Yet private users can be hit by an encryption <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Trojan Horse&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Malware disguising itself as something useful or a game, however with completely different objectives in reality. Trojans can for instance capture, change or delete passwords or other confidential data, or transmit them to an attacker.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>Trojan<\/span> and by ensuing data loss just as well.<\/p>\n<h3>How to proceed in case of damage<\/h3>\n<p>The most important measure must be taken before any damage occurs: The regular creation of <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Back-up&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Data back-up, where electronic information (data) is copied to an external storage medium (e. g. an external hard drive). Back-ups are generally run at regular intervals.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>back-up<\/span> copies of your data! Of course, any potential infection of your system will be troublesome and associated with some effort (reinstallation). But what really counts is that your personal data can be rescued &ndash; from other threats, too! Further information on this topic can be found in &ldquo;<a href=\"https:\/\/www.ebas.ch\/en\/1-backing-up-data\/\">Step&nbsp;1: Back up your data<\/a>&rdquo;.<\/p>\n<p>We actively discourage anyone from actually paying a ransom! There is absolutely no guarantee that victims will be provided access to their encrypted files again. In addition, such payments will finance the criminals&rsquo; business model and allow them to continue their <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span> attacks and harm further victims.<\/p>\n<div class=\"ebas-gist\">\n<h4>How to proceed in case of damage:<\/h4>\n<ul>\n<li><strong>Switch off your device completely.<\/strong><br>\nIf you notice any irregularities on your system or suspect that <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span> or another type of <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Malware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;The term is made up of the terms &amp;quot;malicious&rdquo; and &amp;quot;software&rdquo;. Malware is the generic term for software which executes malicious functions on a device (such as viruses, worms, Trojans, ransomware).&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>malware<\/span> generally is on the loose, switch off your device completely! This means disconnecting your device from its power supply &ndash; please make sure to pull the power plug, or push your device power switch for at least 5 seconds. This is the only way to salvage as many of your data as possible. It is not that easy to disconnect a smartphone or tablet from its power supply though, and you should shut them down as &ldquo;usual&rdquo;.<\/li>\n<li><strong>Use a live system to clean your device.<\/strong><br>\nIf possible and feasible for you, restart your device using a live system, for instance &ldquo;<a href=\"https:\/\/www.heise.de\/download\/product\/desinfect-71642\" target=\"_blank\" rel=\"noopener\">Desinfec&rsquo;t<\/a>&ldquo; by &ldquo;c&rsquo;t&rdquo;. You can use this to scan, clean and establish another <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Back-up&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;Data back-up, where electronic information (data) is copied to an external storage medium (e. g. an external hard drive). Back-ups are generally run at regular intervals.&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>back-up<\/span> of your data in a secure manner. Otherwise, take your device to a specialist, so they can do this for you.<\/li>\n<li><strong>If known, use decryption routines.<\/strong><br>\nYou can establish whether a certain type of <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span> is already known on such websites as <a href=\"https:\/\/www.nomoreransom.org\/en\/index.html\" target=\"_blank\" rel=\"noopener\">www.nomoreransom.org<\/a>. From there, you can also download and run decryption routines.<\/li>\n<li><strong>Change all your passwords.<\/strong><br>\nFurther information on this topic can be found in &ldquo;<a href=\"https:\/\/www.ebas.ch\/en\/4-protecting-online-access\/\">Step 4: Protecting online access<\/a>&rdquo;.<\/li>\n<li><strong>Report this to the authorities.<\/strong><br>\nLet the <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;National Cyber Security Centre (NCSC)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;The National Cyber Security Centre (NCSC) is the competence centre of the Federation for cyber security and hence the first port of call for businesses, administration, educational institutions and the population for any questions involving cyber security. It is responsible for the coordinated implementation of the Nationale Cyberstrategie (NCS, National Cyber Strategy).&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">National Cyber Security Centre<\/span> (<span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;National Cyber Security Centre (NCSC)&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;The National Cyber Security Centre (NCSC) is the competence centre of the Federation for cyber security and hence the first port of call for businesses, administration, educational institutions and the population for any questions involving cyber security. It is responsible for the coordinated implementation of the Nationale Cyberstrategie (NCS, National Cyber Strategy).&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>NCSC<\/span>) know using their <a href=\"https:\/\/www.report.ncsc.admin.ch\/en\/\" target=\"_blank\" rel=\"noopener\">report form<\/a>, and also report this to your local police station.<\/li>\n<\/ul>\n<\/div>\n<h3>Breachstortion<\/h3>\n<p>So-called &ldquo;breachstortion&rdquo; is a new strategy of attack very similar to <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span>, and frequently used in combination with it. This does not primarily involve the encryption of data, but threats to publish sensitive information, which could damage a victim&rsquo;s (usually a company&rsquo;s) reputation. To protect their reputation, victims receive a demand to remit a certain sum of money to the attackers.<\/p>\n<p>This strategy plays on victims&rsquo; fears, and is meant to reinforce an attacker&rsquo;s ransom demand even further &ndash; if a victim is not prepared to remit the amount of money demanded for decrypting data.<\/p>\n<\/div><\/section><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-e2kbb-86d4495b00c389f290046e9e5f6e0589\">\n.flex_column.av-e2kbb-86d4495b00c389f290046e9e5f6e0589{\nborder-radius:0px 0px 0px 0px;\npadding:0px 0px 0px 0px;\n}\n<\/style>\n<div class=\"flex_column av-e2kbb-86d4495b00c389f290046e9e5f6e0589 av_one_fourth  avia-builder-el-3  el_after_av_three_fourth  avia-builder-el-last  ebas-sidebar flex_column_div av-zero-column-padding  \"><section class=\"av_textblock_section av-jvmf7hs6-b03eb60eda2808dc619b95b2db32d206 \" itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\"><div class=\"avia_textblock\" itemprop=\"text\"><p><span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">Ransomware<\/span> is a certain family of <span class=\"glossaryLink\"  aria-describedby=\"tt\"  data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Malware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;The term is made up of the terms &amp;quot;malicious&rdquo; and &amp;quot;software&rdquo;. Malware is the generic term for software which executes malicious functions on a device (such as viruses, worms, Trojans, ransomware).&lt;\/div&gt;\n\"  data-mobile-support=\"0\"  data-gt-translate-attributes='[{\"attribute\":\"data-cmtooltip\", \"format\":\"html\"}]' tabindex='0' role='link'>malware<\/span>. This usually spreads via malicious e&#8209;mail attachments or infected websites. Once installed, <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">ransomware<\/span> will encrypt files on its victims&rsquo; computers and on any network drives and storage media connected to them (for instance USB sticks). Victims are then unable to use these encrypted files again.<\/p>\n&nbsp;\n<p><strong>Play our <span class=\"glossaryLink\" aria-describedby=\"tt\" data-cmtooltip=\"&lt;div class=glossaryItemTitle&gt;Ransomware&lt;\/div&gt;&lt;div class=glossaryItemBody&gt;This is malware which encrypts files on a device and any network drives and storage media connected with it (e. g. external hard drives, cloud storage media) and demands a ransom payment.&lt;\/p&gt;\n&lt;p&gt;&amp;lt;img class=&amp;quot;alignnone size-medium wp-image-4199&amp;quot; src=&amp;quot;https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/ransomware-300x226.png&amp;quot; alt=&amp;quot;&amp;quot; width=&amp;quot;300&amp;quot; height=&amp;quot;226&amp;quot; \/&amp;gt;&lt;\/p&gt;&lt;\/div&gt;\n\" data-mobile-support=\"0\" data-gt-translate-attributes=\"[{&quot;attribute&quot;:&quot;data-cmtooltip&quot;, &quot;format&quot;:&quot;html&quot;}]\" tabindex=\"0\" role=\"link\">Ransomware<\/span> Game!<\/strong><\/p>\n<p><a href=\"https:\/\/www.ebas.ch\/en\/ransomware-game\/\" class=\"ebas-media-link ebas-media-link\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-medium wp-image-37914\" src=\"https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en-300x169.png\" alt=\"\" width=\"300\" height=\"169\" srcset=\"https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en-300x169.png 300w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en-1030x579.png 1030w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en-768x432.png 768w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en-1536x864.png 1536w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en-1500x844.png 1500w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en-705x397.png 705w, https:\/\/www.ebas.ch\/wp-content\/uploads\/2023\/10\/RansomwareGame_SpielStarten_en.png 1920w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\"\/><\/a><\/p>\n<\/div><\/section><\/div>\n<\/div><\/div><\/main><\/div><\/div>","protected":false},"excerpt":{"rendered":"<p>Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users\u2019 files, to only grant them access again once a \u201cransom\u201d has been paid \u2013 well, just maybe grant them access...!<\/p>\n","protected":false},"author":1,"featured_media":3056,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[30,496],"tags":[],"class_list":["post-8593","page","type-page","status-publish","has-post-thumbnail","hentry","category-threats","category-tips-for-smes"],"acf":[],"yoast_head":"<title>Ransomware (encryption Trojans) - \u00abeBanking \u2013 but secure!\u00bb<\/title>\n<meta name=\"description\" content=\"Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users\u2019 files, to only grant them access again once a \u201cransom\u201d has been paid \u2013 well, just maybe grant them access...!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Ransomware (encryption Trojans) - \u00abeBanking \u2013 but secure!\u00bb\" \/>\n<meta property=\"og:description\" content=\"Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users\u2019 files, to only grant them access again once a \u201cransom\u201d has been paid \u2013 well, just maybe grant them access...!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/\" \/>\n<meta property=\"og:site_name\" content=\"\u00abeBanking \u2013 but secure!\u00bb\" \/>\n<meta property=\"article:modified_time\" content=\"2024-01-09T09:35:16+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/Ransomware.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2000\" \/>\n\t<meta property=\"og:image:height\" content=\"1333\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"7 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/\",\"url\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/\",\"name\":\"Ransomware (encryption Trojans) - \u00abeBanking \u2013 but secure!\u00bb\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.ebas.ch\\\/wp-content\\\/uploads\\\/2019\\\/09\\\/Ransomware.jpg\",\"datePublished\":\"2019-09-17T09:40:33+00:00\",\"dateModified\":\"2024-01-09T09:35:16+00:00\",\"description\":\"Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users\u2019 files, to only grant them access again once a \u201cransom\u201d has been paid \u2013 well, just maybe grant them access...!\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.ebas.ch\\\/wp-content\\\/uploads\\\/2019\\\/09\\\/Ransomware.jpg\",\"contentUrl\":\"https:\\\/\\\/www.ebas.ch\\\/wp-content\\\/uploads\\\/2019\\\/09\\\/Ransomware.jpg\",\"width\":2000,\"height\":1333,\"caption\":\"Close-up Of A Person Looking At Laptop Screen Showing Personal Files Encrypted Text\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/ransomware-encryption-trojans\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Threats\",\"item\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/category\\\/threats\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Ransomware (encryption Trojans)\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/\",\"name\":\"\u00abeBanking \u2013 but secure!\u00bb\",\"description\":\"\u00abeBanking \u2013 but secure!\u00bb is an independent platform meant to help you maintain your personal computer security.\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/#organization\",\"name\":\"\u00abeBanking \u2013 aber sicher!\u00bb\",\"url\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.ebas.ch\\\/wp-content\\\/uploads\\\/2020\\\/06\\\/logo_ebas_de.svg\",\"contentUrl\":\"https:\\\/\\\/www.ebas.ch\\\/wp-content\\\/uploads\\\/2020\\\/06\\\/logo_ebas_de.svg\",\"width\":10,\"height\":1,\"caption\":\"\u00abeBanking \u2013 aber sicher!\u00bb\"},\"image\":{\"@id\":\"https:\\\/\\\/www.ebas.ch\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"}}]}<\/script>","yoast_head_json":{"title":"Ransomware (encryption Trojans) - \u00abeBanking \u2013 but secure!\u00bb","description":"Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users\u2019 files, to only grant them access again once a \u201cransom\u201d has been paid \u2013 well, just maybe grant them access...!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/","og_locale":"en_US","og_type":"article","og_title":"Ransomware (encryption Trojans) - \u00abeBanking \u2013 but secure!\u00bb","og_description":"Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users\u2019 files, to only grant them access again once a \u201cransom\u201d has been paid \u2013 well, just maybe grant them access...!","og_url":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/","og_site_name":"\u00abeBanking \u2013 but secure!\u00bb","article_modified_time":"2024-01-09T09:35:16+00:00","og_image":[{"width":2000,"height":1333,"url":"https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/Ransomware.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"7 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/","url":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/","name":"Ransomware (encryption Trojans) - \u00abeBanking \u2013 but secure!\u00bb","isPartOf":{"@id":"https:\/\/www.ebas.ch\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/#primaryimage"},"image":{"@id":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/#primaryimage"},"thumbnailUrl":"https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/Ransomware.jpg","datePublished":"2019-09-17T09:40:33+00:00","dateModified":"2024-01-09T09:35:16+00:00","description":"Criminals use various strategies to steal money from their unsuspecting victims. One popular approach is to encrypt users\u2019 files, to only grant them access again once a \u201cransom\u201d has been paid \u2013 well, just maybe grant them access...!","breadcrumb":{"@id":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/#primaryimage","url":"https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/Ransomware.jpg","contentUrl":"https:\/\/www.ebas.ch\/wp-content\/uploads\/2019\/09\/Ransomware.jpg","width":2000,"height":1333,"caption":"Close-up Of A Person Looking At Laptop Screen Showing Personal Files Encrypted Text"},{"@type":"BreadcrumbList","@id":"https:\/\/www.ebas.ch\/en\/ransomware-encryption-trojans\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.ebas.ch\/en\/"},{"@type":"ListItem","position":2,"name":"Threats","item":"https:\/\/www.ebas.ch\/en\/category\/threats\/"},{"@type":"ListItem","position":3,"name":"Ransomware (encryption Trojans)"}]},{"@type":"WebSite","@id":"https:\/\/www.ebas.ch\/en\/#website","url":"https:\/\/www.ebas.ch\/en\/","name":"\u00abeBanking \u2013 but secure!\u00bb","description":"\u00abeBanking \u2013 but secure!\u00bb is an independent platform meant to help you maintain your personal computer security.","publisher":{"@id":"https:\/\/www.ebas.ch\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.ebas.ch\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.ebas.ch\/en\/#organization","name":"\u00abeBanking \u2013 aber sicher!\u00bb","url":"https:\/\/www.ebas.ch\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.ebas.ch\/en\/#\/schema\/logo\/image\/","url":"https:\/\/www.ebas.ch\/wp-content\/uploads\/2020\/06\/logo_ebas_de.svg","contentUrl":"https:\/\/www.ebas.ch\/wp-content\/uploads\/2020\/06\/logo_ebas_de.svg","width":10,"height":1,"caption":"\u00abeBanking \u2013 aber sicher!\u00bb"},"image":{"@id":"https:\/\/www.ebas.ch\/en\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/pages\/8593","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/comments?post=8593"}],"version-history":[{"count":3,"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/pages\/8593\/revisions"}],"predecessor-version":[{"id":38804,"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/pages\/8593\/revisions\/38804"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/media\/3056"}],"wp:attachment":[{"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/media?parent=8593"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/categories?post=8593"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ebas.ch\/en\/wp-json\/wp\/v2\/tags?post=8593"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}