New Anatova Ransomware Morphs Itself as an App or Game to Dupe Victims: McAfee

Advertisement
By Tasneem Akolawala | Updated: 24 January 2019 19:01 IST
Highlights
  • Anatova ransomware encrypts files on infected system, then asks for money
  • Most number of users that have been affected are from US
  • Anatova refuses to infect systems in India

The ransomware seems to have first emerged on January 1

A new ransomware named Anatova has been discovered by McAfee, and the security firm claims that the ransomware disguises itself as free games and software to attract users to download it. This ransomware has hit users mostly in the US, but it's been spotted in Belgium, Germany, France, the UK, and other European countries as well. McAfee claims that the new code behind this ransomware, and its modular extension abilities, suggests that seasoned malware developers are behind this, and it seems to have first emerged on January 1.

The new Anatova ransomware family was discovered in a private peer-to-peer (p2p) network, and McAfee feels that it can become a serious threat since the code is prepared for modular extension. The research company notes that the main goal of Anatova is to cipher all the files it can before requesting payment from the victim.

The ransomware morphs itself into the icon of a game or application to try and fool the user into downloading it. Once downloaded, Anatova will encrypt all or many files on the infected system and insist on payment to unlock them. "The malware developers demand a ransom payment in cryptocurrency of 10 Dash - currently valued at around $700 USD, a quite high amount compared to other ransomware families," the company notes.

Advertisement

McAfee says that Anatova creates RSA Pair of Keys using a crypto API that will cipher all strings. This function is the same as in other ransomware families, such as GandCrab or Crysis. It makes sure that the keys that will be used are per user and per execution. It then writes a ransom note that includes the email address and the payment mode.

Advertisement

"Anatova has the potential to become very dangerous with its modular architecture which means that new functionalities can easily be added. The malware is written by experienced authors that have embedded enough functionalities to be sure that typical methods to overcome ransomware will be ineffective," said Christiaan Beek, lead scientist and principle engineer at McAfee, told ZDnet.

The report also states that Anatova will terminate itself if it finds that the victim is a member of the Commonwealth of Independent States - made up of former Soviet nations, including Russia. It will also not infect systems in Syria, Egypt, Morocco, Iraq and India.

Advertisement

While Indian users are safe for now, we recommend all Internet users to download any unofficial games or apps with caution.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Ransomware, Anatova, McAfee
Advertisement

Related Stories

Popular Mobile Brands
  1. Poco F8 Series Will Be Launched Globally on This Date
  2. Vivo X300 and Teleconverter Kit India Prices Tipped Ahead of Launch
  3. Oppo Find X9 Series Price in India Leaked Again Ahead of Debut
  4. Bitcoin Hovers Near $95,000 Following Crypto Market Wipeout
  5. Here's When Apple's iPhone 18 Pro Models and Foldable Phone Might Launch
  6. Xiaomi 17 and Xiaomi 17 Pro First Impressions
  7. OnePlus Ace 6T Launch Timeline Revealed; Will Sport This Snapdragon Chip
  8. Raktabeej 2 Arrives on OTT Platforms This November: All You Need to Know
  1. OnePlus Ace 6T Launch Timeline Confirmed; Will Debut This Month With Snapdragon 8 Gen 5 SoC
  2. Bitcoin Hovers Near $95,000 as Bearish Sentiment Dominates Crypto Market
  3. Poco F8 Series Global Launch Date Officially Confirmed, Tipped to Feature Snapdragon 8 Elite Series Chipsets
  4. Oppo Find X9 Series Price in India Leaked Again; Now Expected to Launch at Higher Price
  5. iPhone 18 Pro, iPhone 18 Pro Max Said to Launch Next Fall Alongside Apple's New Foldable Smartphone
  6. Vivo X300 and Teleconverter Kit India Prices Tipped Ahead of December 2 Launch
  7. Goodbye June OTT Release Date Revealed: When, Where to Watch Kate Winslet, Helen Mirren-Starrer Online
  8. Raktabeej 2 Arrives on OTT Platforms This November: All You Need to Know About this Action-Thriller
  9. Usurae Now Streaming on OTT: Plot, Cast, and Everything Else About This Tamil-Language Romantic Drama
  10. Supernova’s First Moments Show Olive-Shaped Blast in Groundbreaking Observations
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.