TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Ransomware as a Service

160 pointsby hmhrexover 7 years ago

6 comments

ikeboyover 7 years ago
&gt;Communications with the C2 server are performed via HTTPS: kdvm5fd6tn6jsbwh[.]onion[.]to (185[.]100[.]85[.]150) located in Romania.<p>That&#x27;s just a tor tunnel, IP and location doesn&#x27;t matter.
评论 #16240822 未加载
johnnycarcinover 7 years ago
&gt; &quot;Based on the strings present in the PE file, it has been written in Go&quot;<p>I find this kind of interesting. I&#x27;ve seen reports on other malware&#x2F;virus stuff written in Go recently. I wonder if this is because the ability to cross compile with Go is pretty painless? Or is it because the language is fairly approachable but still allows you to dig a bit &quot;deeper&quot; if you need to?
评论 #16240977 未加载
评论 #16240434 未加载
评论 #16243569 未加载
karrotwaltzover 7 years ago
&gt; The business model behind the service is simple: the bad guys keep 10% of the ransom.<p>Creating a ransomware is indeed not a very nice thing to do, but IMO the ones that deserve the most to be called &quot;bad guys&quot; are the ones that actually spread the binary (so, the ones that keep the other 90%)
评论 #16240698 未加载
评论 #16240697 未加载
评论 #16241652 未加载
blauditoreover 7 years ago
I find it somewhat ironic they include a captcha to protect against malicious users.
评论 #16244451 未加载
评论 #16240302 未加载
评论 #16240530 未加载
JumpCrisscrossover 7 years ago
I&#x27;m waiting for something like this to take the form of an Ethereum smart contract.
评论 #16241511 未加载
btxover 7 years ago
Interestingly it does not seem to be a new concept: <a href="https:&#x2F;&#x2F;www.reddit.com&#x2F;r&#x2F;netsec&#x2F;comments&#x2F;37ko5v&#x2F;introducing_raas_ransomware_as_a_service&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.reddit.com&#x2F;r&#x2F;netsec&#x2F;comments&#x2F;37ko5v&#x2F;introducing_...</a> <a href="https:&#x2F;&#x2F;securingtomorrow.mcafee.com&#x2F;mcafee-labs&#x2F;meet-tox-ransomware-for-the-rest-of-us" rel="nofollow">https:&#x2F;&#x2F;securingtomorrow.mcafee.com&#x2F;mcafee-labs&#x2F;meet-tox-ran...</a><p>They used to take 20% &#x27;commission&#x27;.