{"id":8297,"date":"2017-01-17T09:22:36","date_gmt":"2017-01-17T17:22:36","guid":{"rendered":"http:\/\/blog.hellotech.com\/?p=8297"},"modified":"2023-02-02T12:18:35","modified_gmt":"2023-02-02T20:18:35","slug":"koolova","status":"publish","type":"post","link":"https:\/\/www.hellotech.com\/blog\/koolova","title":{"rendered":"Koolova: A Ransomware That &#8220;Teaches&#8221; You about Ransomware the Hard Way"},"content":{"rendered":"\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">We&#8217;ve seen strange things on the Internet, but none may be stranger than this. While most ransomware typically encrypts files and demands ransom from the victim, this newly discovered variant locks up your files, threatens to delete them, and&#8230; asks you to educate yourself about ransomware. Funny, but we&#8217;re not kidding. Koolova is the educational ransomware.<\/span><\/p>\n\n\n\n<h2 class=\"zw-paragraph wp-block-heading\" id=\"h-meet-koolova\">Meet Koolova<\/h2>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">Recently discovered by a security researcher, &#8220;Koolova&#8221; is an in-development ransomware that is a new variant of an infamous crypto-malware. It claims to be a nice version of the <\/span><a href=\"http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/jigsaw-ransomware-plays-games-victims\/\"><span class=\"zw-portion link\">Jigsaw ransomware<\/span><\/a><span class=\"zw-portion\">, though it isn&#8217;t one you should take lightly.<\/span><span class=\"zw-portion EOP\">&nbsp;<\/span><\/p>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">Once it&#8217;s unleashed, <em>Koolova<\/em> encrypts your files and displays a screen similar to Jigsaw&#8217;s. As the text gradually shows up on the screen, it will tell you to read two articles about ransomware to get the decryption key. No big deal, right? Wrong.<\/span><span class=\"zw-portion EOP\">&nbsp;<\/span><\/p>\n\n\n\n<h2 class=\"zw-paragraph wp-block-heading\" id=\"h-no-idle-threat\">No Idle Threat<\/h2>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">If you&#8217;re too lazy to follow the instruction and read those two articles within a prescribed timeframe, the ransomware <\/span><em><span class=\"zw-portion\">actually<\/span><\/em><span class=\"zw-portion\"> deletes your files. It&#8217;s not playing around so you need to take action before time runs out.<\/span><span class=\"zw-portion EOP\">&nbsp;<\/span><\/p>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">So what are those two articles you need to read? They&#8217;re &#8220;Jigsaw Ransomware Decrypted: Will delete your files until you pay the Ransom&#8221; by Bleeping Computer\u00ae and &#8220;<\/span><a href=\"https:\/\/security.googleblog.com\/2010\/09\/stay-safe-while-browsing.html\"><span class=\"zw-portion link\">Stay safe while browsing<\/span><\/a><span class=\"zw-portion\">&#8221; on Google Security Blog. Oddly, you can navigate to the articles directly off the ransomware&#8217;s information screen by clicking the two links displayed.<\/span><\/p>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">When you read both, <\/span><span class=\"zw-portion\">the <\/span><em><span class=\"zw-portion\">Decripta i Miei File<\/span><\/em><span class=\"zw-portion\"> (English translation: <\/span><em><span class=\"zw-portion\">Decrypt My Files<\/span><\/em><span class=\"zw-portion\">) button then becomes available. Thank your lucky stars that the ransomware doesn&#8217;t give you an exam about what you&#8217;ve just read. Click on that and the ransomware connects to its server to retrieve a decryption key. Afterward, you can take the key, enter it into the key field, and finally heave a sigh of relief.<\/span><span class=\"zw-portion EOP\">&nbsp;<\/span><\/p>\n\n\n\n<h2 class=\"zw-paragraph wp-block-heading\" id=\"h-the-biggest-takeaway\">The Biggest Takeaway<\/h2>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">As <em>Koolova<\/em> takes your files hostage, it will ask you to stop downloading unsafe applications off the Web. That may be the biggest takeaway from this close shave against a potentially nasty disaster.<\/span><span class=\"zw-portion EOP\">&nbsp;<\/span><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><span class=\"zw-portion\">Be extra sure your precious computer won&#8217;t be held hostage by Koolova or any ransomware anytime soon by heeding these tips:&nbsp;<\/span><\/li>\n\n\n\n<li><span style=\"font-size: inherit;\">Run an up-to-date antivirus software on regular intervals.<\/span> <\/li>\n\n\n\n<li><span style=\"font-size: inherit;\">Disable any browser plug-ins or software you don&#8217;t use to reduce your vulnerability to online threats.<\/span> <\/li>\n\n\n\n<li> <span style=\"font-size: inherit;\">Keep your Internet browser and, more importantly, your operating system updated.<\/span> <\/li>\n\n\n\n<li> <span style=\"font-size: inherit;\">Never open email attachments from unreliable and untrustworthy sources.<\/span> <\/li>\n<\/ul>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">Whether or not you become more careful about what you do on the web from here on out, one thing is sure: Koolova may be the closest you or anyone can get to learning about ransomware the hard way.<\/span><\/p>\n\n\n\n<h2 class=\"zw-paragraph wp-block-heading\" id=\"h-ransomware-threats-on-the-rise\">Ransomware Threats on the Rise<\/h2>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">Koolova isn&#8217;t the only strange malware we&#8217;ve seen so far.&nbsp;<\/span><a href=\"https:\/\/www.hellotech.com\/popcorn-time-ransomware\/\"><span class=\"zw-portion link\">Popcorn Time<\/span><\/a><span class=\"zw-portion\">&nbsp;is a nasty malware that only frees you from its clutches when you infect somebody else on your contact list.<\/span><\/p>\n\n\n\n<p class=\"zw-paragraph\"><span class=\"zw-portion\">The scary part in all these is that these online threats will&nbsp;only get more cunning and aggressive over time. Vigilance, no doubt, may be the best and only way to protect yourself against them.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>We&#8217;ve seen strange things on the Internet, but none may be stranger than this. While most ransomware typically encrypts files and demands ransom from the victim, this newly discovered variant locks up your files, threatens to delete them, and&#8230; asks you to educate yourself about ransomware. Funny, but we&#8217;re not kidding. Koolova is the educational ransomware. Meet Koolova Recently discovered by a security researcher, &#8220;Koolova&#8221; is an in-development ransomware that is a new variant of an infamous crypto-malware. It claims [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":8303,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[17587,17593],"tags":[],"class_list":["post-8297","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-staying-safe"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v20.10 (Yoast SEO v20.10) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Koolova: A Ransomware That &quot;Teaches&quot; You About...Ransomware?<\/title>\n<meta name=\"description\" content=\"We&#039;ve seen strange things on the Internet, but none may be stranger than this. Koolova is a ransomware that forces you to learn about ransomware.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.hellotech.com\/blog\/koolova\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Koolova: A Ransomware That &quot;Teaches&quot; You about Ransomware the Hard Way - The Plug - HelloTech\" \/>\n<meta property=\"og:description\" content=\"We&#039;ve seen strange things on the Internet, but none may be stranger than this. While most ransomware typically encrypts files and demands ransom from the\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.hellotech.com\/blog\/koolova\" \/>\n<meta property=\"og:site_name\" content=\"The Plug - HelloTech\" \/>\n<meta property=\"article:publisher\" content=\"http:\/\/www.facebook.com\/hellotech\" \/>\n<meta property=\"article:published_time\" content=\"2017-01-17T17:22:36+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-02-02T20:18:35+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.hellotech.com\/blog\/wp-content\/uploads\/2017\/01\/apple-1839046_640-min.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"640\" \/>\n\t<meta property=\"og:image:height\" content=\"427\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"admin\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@HelloTech\" \/>\n<meta name=\"twitter:site\" content=\"@HelloTech\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/koolova#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.hellotech.com\/blog\/koolova\"},\"author\":{\"name\":\"admin\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/#\/schema\/person\/dec00225dd888a509740ace5e4d9de6c\"},\"headline\":\"Koolova: A Ransomware That &#8220;Teaches&#8221; You about Ransomware the Hard Way\",\"datePublished\":\"2017-01-17T17:22:36+00:00\",\"dateModified\":\"2023-02-02T20:18:35+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.hellotech.com\/blog\/koolova\"},\"wordCount\":550,\"publisher\":{\"@id\":\"https:\/\/www.hellotech.com\/blog\/#organization\"},\"articleSection\":[\"News\",\"Staying Safe\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/koolova\",\"url\":\"https:\/\/www.hellotech.com\/blog\/koolova\",\"name\":\"Koolova: A Ransomware That \\\"Teaches\\\" You About...Ransomware?\",\"isPartOf\":{\"@id\":\"https:\/\/www.hellotech.com\/blog\/#website\"},\"datePublished\":\"2017-01-17T17:22:36+00:00\",\"dateModified\":\"2023-02-02T20:18:35+00:00\",\"description\":\"We've seen strange things on the Internet, but none may be stranger than this. Koolova is a ransomware that forces you to learn about ransomware.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.hellotech.com\/blog\/koolova#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.hellotech.com\/blog\/koolova\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/koolova#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.hellotech.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Koolova: A Ransomware That &#8220;Teaches&#8221; You about Ransomware the Hard Way\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/#website\",\"url\":\"https:\/\/www.hellotech.com\/blog\/\",\"name\":\"The Plug - HelloTech\",\"description\":\"Turn to The Plug for informative tech news that you can use. \",\"publisher\":{\"@id\":\"https:\/\/www.hellotech.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.hellotech.com\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/#organization\",\"name\":\"HelloTech\",\"url\":\"https:\/\/www.hellotech.com\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.hellotech.com\/blog\/wp-content\/uploads\/2018\/11\/HT-logo-revised-final.png\",\"contentUrl\":\"https:\/\/www.hellotech.com\/blog\/wp-content\/uploads\/2018\/11\/HT-logo-revised-final.png\",\"width\":1000,\"height\":174,\"caption\":\"HelloTech\"},\"image\":{\"@id\":\"https:\/\/www.hellotech.com\/blog\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"http:\/\/www.facebook.com\/hellotech\",\"https:\/\/twitter.com\/HelloTech\",\"http:\/\/www.instagram.com\/hello_tech\",\"https:\/\/www.youtube.com\/channel\/UCIR-fbAKRfVuAbciDr2z4nQ\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/#\/schema\/person\/dec00225dd888a509740ace5e4d9de6c\",\"name\":\"admin\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.hellotech.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/cbb537d18df244ad7d57a3639d94ede5cd90bf1fb742392af5731beaf11ffeb1?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/cbb537d18df244ad7d57a3639d94ede5cd90bf1fb742392af5731beaf11ffeb1?s=96&d=mm&r=g\",\"caption\":\"admin\"}}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Koolova: A Ransomware That \"Teaches\" You About...Ransomware?","description":"We've seen strange things on the Internet, but none may be stranger than this. Koolova is a ransomware that forces you to learn about ransomware.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.hellotech.com\/blog\/koolova","og_locale":"en_US","og_type":"article","og_title":"Koolova: A Ransomware That \"Teaches\" You about Ransomware the Hard Way - The Plug - HelloTech","og_description":"We've seen strange things on the Internet, but none may be stranger than this. While most ransomware typically encrypts files and demands ransom from the","og_url":"https:\/\/www.hellotech.com\/blog\/koolova","og_site_name":"The Plug - HelloTech","article_publisher":"http:\/\/www.facebook.com\/hellotech","article_published_time":"2017-01-17T17:22:36+00:00","article_modified_time":"2023-02-02T20:18:35+00:00","og_image":[{"width":640,"height":427,"url":"https:\/\/www.hellotech.com\/blog\/wp-content\/uploads\/2017\/01\/apple-1839046_640-min.jpg","type":"image\/jpeg"}],"author":"admin","twitter_card":"summary_large_image","twitter_creator":"@HelloTech","twitter_site":"@HelloTech","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.hellotech.com\/blog\/koolova#article","isPartOf":{"@id":"https:\/\/www.hellotech.com\/blog\/koolova"},"author":{"name":"admin","@id":"https:\/\/www.hellotech.com\/blog\/#\/schema\/person\/dec00225dd888a509740ace5e4d9de6c"},"headline":"Koolova: A Ransomware That &#8220;Teaches&#8221; You about Ransomware the Hard Way","datePublished":"2017-01-17T17:22:36+00:00","dateModified":"2023-02-02T20:18:35+00:00","mainEntityOfPage":{"@id":"https:\/\/www.hellotech.com\/blog\/koolova"},"wordCount":550,"publisher":{"@id":"https:\/\/www.hellotech.com\/blog\/#organization"},"articleSection":["News","Staying Safe"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.hellotech.com\/blog\/koolova","url":"https:\/\/www.hellotech.com\/blog\/koolova","name":"Koolova: A Ransomware That \"Teaches\" You About...Ransomware?","isPartOf":{"@id":"https:\/\/www.hellotech.com\/blog\/#website"},"datePublished":"2017-01-17T17:22:36+00:00","dateModified":"2023-02-02T20:18:35+00:00","description":"We've seen strange things on the Internet, but none may be stranger than this. Koolova is a ransomware that forces you to learn about ransomware.","breadcrumb":{"@id":"https:\/\/www.hellotech.com\/blog\/koolova#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.hellotech.com\/blog\/koolova"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.hellotech.com\/blog\/koolova#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.hellotech.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Koolova: A Ransomware That &#8220;Teaches&#8221; You about Ransomware the Hard Way"}]},{"@type":"WebSite","@id":"https:\/\/www.hellotech.com\/blog\/#website","url":"https:\/\/www.hellotech.com\/blog\/","name":"The Plug - HelloTech","description":"Turn to The Plug for informative tech news that you can use. ","publisher":{"@id":"https:\/\/www.hellotech.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.hellotech.com\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.hellotech.com\/blog\/#organization","name":"HelloTech","url":"https:\/\/www.hellotech.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hellotech.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.hellotech.com\/blog\/wp-content\/uploads\/2018\/11\/HT-logo-revised-final.png","contentUrl":"https:\/\/www.hellotech.com\/blog\/wp-content\/uploads\/2018\/11\/HT-logo-revised-final.png","width":1000,"height":174,"caption":"HelloTech"},"image":{"@id":"https:\/\/www.hellotech.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["http:\/\/www.facebook.com\/hellotech","https:\/\/twitter.com\/HelloTech","http:\/\/www.instagram.com\/hello_tech","https:\/\/www.youtube.com\/channel\/UCIR-fbAKRfVuAbciDr2z4nQ"]},{"@type":"Person","@id":"https:\/\/www.hellotech.com\/blog\/#\/schema\/person\/dec00225dd888a509740ace5e4d9de6c","name":"admin","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hellotech.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/cbb537d18df244ad7d57a3639d94ede5cd90bf1fb742392af5731beaf11ffeb1?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/cbb537d18df244ad7d57a3639d94ede5cd90bf1fb742392af5731beaf11ffeb1?s=96&d=mm&r=g","caption":"admin"}}]}},"_links":{"self":[{"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/posts\/8297","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/comments?post=8297"}],"version-history":[{"count":0,"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/posts\/8297\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/media\/8303"}],"wp:attachment":[{"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/media?parent=8297"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/categories?post=8297"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.hellotech.com\/blog\/wp-json\/wp\/v2\/tags?post=8297"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}