Ransomware

Modern ransom extortion

The term Ransomware is formed by combining the English words Ransom and Software. Ransomware is therefore a program used to extort a ransom payment, making it a special form of malware. Other terms for Ransomware include encryption trojans and cryptotrojans, as well as cryptoviruses and crytolockers. Well-known types of Ransomware include Locky, Petya and TeslaCrypt.

How do you become infected with Ransomware?

Ransomware is usually distributed as an email attachment. These attachments often contain Office documents with malicious macros or JavaScript trojans hidden in ZIP files. Another way computers become infected with Ransomware is through so-called drive-by downloads. These are websites infected with malicious code or malicious advertising banners embedded in websites. When a user visits such a website, these malicious programs, known as exploits, automatically scan the user's browser for security vulnerabilities, for example in outdated Flash or Silverlight plugins. These vulnerabilities are then exploited to install the actual Ransomware in the background without the user noticing anything. Read the background article on infection with a cryptovirus to learn how Ransomware behaves once it has infected a computer.

What can you do if you are infected with Ransomware?

If Ransomware has struck your system, you should keep a cool head. We have described the most important steps to take in the event of a Ransomware infection in a crisis plan. Of course, the IT emergency management team of aramido GmbH is also available to you at any time for fast and professional help.

How can you protect yourself against Ransomware?

The best approach is to be prepared for Ransomware attacks. In addition to regular backups, raising employee awareness, for example through live hacking presentations, is a sensible measure. In addition, technical measures can be implemented to detect hacker attacks at an early stage. As part of a penetration test, security vulnerabilities can be identified and should then be remedied within the framework of a holistic IT security concept.

In our article series on the topic of Ransomware, we have compiled further information and research findings about Ransomware for you.


All blog articles on the subject of Ransomware

Kadir Ates

Published on 14.03.2023 in the category aramido published.

Incident Response Tabletop

Apply now for aramido's Incident Response Pen & Paper! Become part of the crisis team and try to resolve the IT security incidents. (read more)


Andreas Sperber

Published on 13.10.2016 in the category Data Security published.

Ransomware: Pay the Ransom or Not?

Negotiating with extortionists makes you vulnerable. In the event of a cryptotrojan infection, should the ransom be paid or not? (read more)


Andreas Sperber

Published on 14.06.2016 in the category Data Security published.

Infection by a Cryptovirus

In the aramido security laboratory, we infected ourselves with a ransomware trojan and show what a cryptolocker would do to your data. (read more)



Armin Harbrecht

Published on 21.05.2016 in the category Data Security published.

Kidnapping 2.0 - Ransomware on the Rise

Cryptotrojans cause significant damage to companies. With the article series on ransomware, aramido reports on the background of the acute threat situation. (read more)