Categories: NewsSecurity

RansomDemoN Expects its Victims to Encrypt Files Themselves

Some versions of ransomware have a better shot at succeeding than others. RansomDemoN will likely not be a major success unless it can get people to click a button that will encrypt their files. Let’s take a look at this particular piece of malicious software.

RansomDemoN is Different and Strange

Creating a unique type of ransomware is not all that easy. Granted, there are many different things developers have yet to attempt, though we can only hope those efforts will all be in vain. Some creators have taken things to the next level by following an alternative path altogether. RansomDemoN is one of the most harmless types of malware to date, unless you can be tricked into clicking a button that will encrypt your files.

The look of RansomDemoN is familiar. Anyone who has seen an image of the WannaCry ransomware will recognize its layout, including the small window on the top left-hand side. Likewise, the text in the RansomDemoN screenshot almost looks identical to that of WannaCry, which goes to show this is a copy-and-paste project more than anything else. Unfortunately, that is a pretty common trend among malware developers these days.

What makes RansomDemoN really interesting — or perhaps really boring — is how it seemingly does nothing at all. It does not encrypt files despite expecting victims to pay a Bitcoin ransom. That does not mean this malware is completely harmless, but you would have to be a very odd internet user to successfully have your files encrypted by this program.

Related Post

RansomDemoN has an “Encrypt” button at its bottom left corner. Hitting that button will encrypt your files, although some reports say it still has a small chance of success. It is unclear why any developer would include an encrypt button as part of his or her creation and ransom note. That would seem rather unusual and counterproductive. One cannot expect people to be so naive as to download ransomware and encrypt their files themselves.

There is also a Bitcoin address included in the ransom note, and victims will see a”pay” button, supposedly designed to take them to a payment page. This has not been confirmed at this time, but it shows there is some potential as far as this creation is concerned. Considering that Bitcoin is anything but an anonymous payment method, the choice to accept payment using that particular cryptocurrency remains highly debatable at this point. Monero would have been a far better solution.

There will be some interesting evolutions in the world of ransomware over the coming months. Asking victims to inflict harm upon themselves and then pay someone else to restore file access seems crazy, but it just might work. A lot of people are curious about what all of those fancy buttons do exactly, and some people will certainly click every button they can. For now, RansomDemoN offers nothing that internet users should be afraid of. However, no threat should ever be taken lightly these days.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Bitwise Launches Its First Tokenized Fund With $259M in Assets and 4% Annual Yield

Bitwise Asset Management has just made its first move into tokenized funds, and it comes…

14 hours ago

Binance Launches US Stocks and ETFs Trading for Non-US Users With Zero Commission

Binance just made a move that blurs the line between crypto exchange and traditional brokerage…

15 hours ago

NEAR Protocol Ships Confidential Payments, Crosses $19B in Intents Volume, and Partners With Bermuda Government

NEAR Protocol has had a month that most blockchain projects would stretch across an entire…

2 days ago

Chainlink Records 7 New Integrations Across 6 Services and 4 Chains

Something is becoming increasingly clear about Chainlink, the integrations are not slowing down. The protocol…

2 days ago

Circle Freezes $12.6 Million in Zama’s Confidential USDC Contract on Ethereum

Blockchain investigator ZachXBT has flagged a major stablecoin freeze that is sending shockwaves through the…

3 days ago

Exponent Finance Launches V2 To Expand Institutional Yield Markets On Solana

From a primarily interest rate swap niche product, Exponent has developed into an onchain capital…

3 days ago