Taking Back What's yours: Defeating CryCryptor ransomware, another covid-19 malware! ☜(˚▽˚)☞ (day 98)
Disclaimer: This post is heavily based on Lukas Stefanko "Analysis of CryCryptor Android Ransomware and how I created decryptor | fake COVID-19 tracing app" all of the credit goes to him and please support his channel(You can check the video in this link ) Background: As soon I see the video, I grab my laptop and to try analyze the malware by myself and see what I came out with. In summary, I understand the encryption along with the decryption process, internal works of the malware in detail and I managed to come out with an alternative way to decrypt back the file. Nevertheless, the concept is pretty much the same from the original video. In this post, I will teach you how to analyze it and create your own tools for recovering the encrypted file. Before we move on to the juicy stuff, the following is the background story of CrypCryptor Android: It's targeting user in Canada It disguises itself as an official COVID-19 tracing app provided by Health Canada ...