• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.
  • The forums have been upgraded with support for dark mode. By default it will follow the setting on your system/browser. You may override it by scrolling to the end of the page and clicking the gears icon.

PUBG Ransomware Forces Users to Play PUBG to Decrypt Their Files

Joined
Sep 22, 2017
Messages
889 (0.32/day)
MalwareHunterTeam recently discovered the PUBG ransomware that is currently floating around the internet. When executed, the pesky program would encrypt the files and folders that are located on the victim's desktop and add the ".PUBG" extension to them. While meant to be more of a joke than actual malware, the program demands that the victim play PUBG for an hour. Nevertheless, users can decrypt their files in two ways. They can introduce the "s2acxx56a2sae5fjh5k2gb5s2e" code into the program and proceed to restore their files or launch the PUBG executable for three seconds. MalwareHunterTeam noted that the program runs a background check for a "TslGame" process, and therefore users can rename any executable to TslGame.exe and trick the malware into thinking that the fake executable is the real deal.


View at TechPowerUp Main Site
 
Well that games ratings just went down the toilet
 
Make one which forces the user to answer physics or chemistry questions, that will make the world a better place.
 
I don't generally do negative news comments but this was sent to me via a google feed last week. Even the source article is a week old. I think the news section ought to have 'news', not 'olds'.
 
I don't generally do negative news comments but this was sent to me via a google feed last week. Even the source article is a week old. I think the news section ought to have 'news', not 'olds'.

+1
 
"Want to play a cruel joke on your buddies? Send them a copy of the PUBG ransomware."
How irresponsible of the OP to POST THIS
TPU Staff you can do better
 
Last edited:
Chino said:
Want to play a cruel joke on your buddies? Send them a copy of the PUBG ransomware.

I cannot believe what TPU has become. Encrypting and decrypting all files on a computer is not a joke. A lot of things can go wrong and some of the files might become corrupted and unusable. Anyone who writes for TPU should know better than to advocate something like this...
 
Have you noticed, guy names his own methods in Spanish

RutinaDeCifrado seems like DecypheringRoutine
BusarArchivos seems like ShearchArchives

Didn't bother to change his default class name Form1 to something meaningful though ... and he detects process only by name (edit: ah, it's what article is about)
 
This little "joke" is nastier than it first seems, as others have explained on here. I'll bet some malware programmer has already made a more damaging version of it, with real consequences.

"Want to play a cruel joke on your buddies? Send them a copy of the PUBG ransomware."

I don't think it's a good idea to give people ideas, either. There's nothing humorous about this malware.
 
I don't think it's a good idea to give people ideas, either. There's nothing humorous about this malware.
I don't want to downplay seriousness of this, but as far as the damage goes, running an executable (as admin) you didn't acquire through official means, the possible damage can be even worse and just as easily as this
 
I don't want to downplay seriousness of this, but as far as the damage goes, running an executable (as admin) you didn't acquire through official means, the possible damage can be even worse and just as easily as this
Yeah, good point. The more one thinks about it, the uglier it gets.
 
How irresponsible of the OP to POST THIS
TPU Staff you can do better
that was my sarcastic point, that should not be in news list, guest and people on internet have different interpretations for this..... just my two cents...
 
Back
Top