CryptoLocker fileson computers and then demands a ransom to "unlock" them, continues to spread, now targeting the Android platform.
BitDefender has detected a new mobile variant of Ransomware, which is being sold by the same criminal group that distributes the desktop version of the malware.
The malware, also known as "Android.Trojan.Koler.A", infects users' devices when they browse specific websites with adult content.
The malware disguises itself as Badoink, a video player that must be installed in order for users to access porn.
Once installed, the malware detects the victims' location and displays a fake warning message in their local language.
“Warning! Your phone has been blocked for security reasons, which are listed below. All your files have been encrypted,” the fake message states, asking users to pay $300 to unlock their device.
If you have been infected with this ransomware, there is no need to panic! The files stored on the device are not actually encrypted. By pressing the Home button, you can return to the home screen. You will have 5 seconds to uninstall the application from your device.
Go to Safe Mode to remove the malicious app
This particular threat is not sophisticated and you can uninstall the malicious app by booting the device into safe mode.
