This new malware isn’t letting any part of an infected computer go to waste.
The Virobot ransomware — spotted on Sept. 17 by Trend Micro researchers — doesn’t just lock up infected computers, it also enlists them as part of its massive botnet.
Ransomware is a prevalent tool for cybercriminals, where it encrypts all files on a victim’s device, demanding that they pay up if they ever want to use their computers again. Botnets are also common in malware, where hackers take mass control of infected devices and direct them to do their bidding.
Theinfected hundreds of thousands of computers around the world, shutting people out of their devices in hospitals, universities and airports. Massive botnets have shown to cause major damage, like when the Mirai botnet caused an in 2016.
After Virobot encrypts a computer, it sends a ransom note demanding about $522 in bitcoin. While it’s locked up the computer, the malware is also using the device’s Microsoft Outlook to send spam email to the person’s contact list. The email contains a copy of Virobot in the hopes of spreading the malware.
Trend Micro’s researchers said that Virobot isn’t able to encrypt any files at the moment because its control server was taken down.