djMot Posted October 24, 2013 Member ID: 3189 Group: *** Clan Members Followers: 98 Topic Count: 357 Topics Per Day: 0.07 Content Count: 5257 Content Per Day: 1.09 Reputation: 11146 Achievement Points: 48948 Solved Content: 0 Days Won: 114 Joined: 02/11/12 Status: Offline Last Seen: 6 hours ago Birthday: 12/24/1957 Device: Windows Posted October 24, 2013 This came to my attention today. BE CAREFUL PEOPLE !!! http://windowssecrets.com/top-story/cryptolocker-a-particularly-pernicious-virus/ sabreeyes 1 Awards
baldie Posted October 24, 2013 Member ID: 607 Group: *** Clan Members Followers: 76 Topic Count: 246 Topics Per Day: 0.04 Content Count: 3367 Content Per Day: 0.59 Reputation: 2718 Achievement Points: 34252 Solved Content: 0 Days Won: 12 Joined: 10/21/09 Status: Offline Last Seen: Yesterday at 08:25 PM Birthday: 09/16/1966 Device: Windows Posted October 24, 2013 Thanks for the Heads up mate precautions are now in place Awards
DEEJAYKEG Posted October 24, 2013 Member ID: 1238 Group: ***- Inactive Clan Members Followers: 35 Topic Count: 1207 Topics Per Day: 0.22 Content Count: 6083 Content Per Day: 1.10 Reputation: 4985 Achievement Points: 50728 Solved Content: 0 Days Won: 11 Joined: 03/12/10 Status: Offline Last Seen: April 11, 2024 Posted October 24, 2013 Yes, this is a bad bastard. It's especially bad news because it will seek out all drives that you can see from Windows Explorer and encrypt their contents too. So, if as most of us have done in the past, one backs up to another hard drive visible to Windows, the back-up would be encrypted too! Two possible solutions, one of which I have implemented after reading about this thing a few days back: i) Make an external portable hard drive your back-up drive and disconnect it after performing the back-up; ii) Back up by imaging the hard drive. There are tools freely available to remove the crypto virus from your system BUT your files cannot be decrypted by anyone other than the criminals. Naturally, the police ask that we do not pay the crims but some people view the loss of some data more costly than the fee (said in the report I read to be BC2 - two Bitcoins valued around $280). Whilst this virus is in the wild and there is potentially a risk that anyone could be affected, those who visit high risk web sites are those asking for trouble. If you like boobs and bums so much that you have to seek them out online, best do so on a system not connected in any way to computers or hard drives containing your treasured family snaps or crucial family, business or legal documents... Also be wary of running downloaded software and using USB pen drives. Here's a video of this sucker running. It looks like Sophos could block it. http://youtu.be/Gz2kmmsMpMI Awards
tsw 8.5 Posted October 24, 2013 Member ID: 906 Group: *** Clan Members Followers: 144 Topic Count: 537 Topics Per Day: 0.10 Content Count: 17544 Content Per Day: 3.12 Reputation: 42645 Achievement Points: 151942 Solved Content: 0 Days Won: 691 Joined: 12/20/09 Status: Offline Last Seen: 10 hours ago Birthday: 11/30/1960 Device: Windows Posted October 24, 2013 thanks mr djMot.. good to know what's out there .. Awards
Sammy Posted October 24, 2013 Member ID: 3036 Group: ***- Inactive Clan Members Followers: 32 Topic Count: 219 Topics Per Day: 0.04 Content Count: 9419 Content Per Day: 1.92 Reputation: 7515 Achievement Points: 62539 Solved Content: 0 Days Won: 21 Joined: 11/29/11 Status: Offline Last Seen: March 17 Birthday: 04/26/2008 Device: Windows Posted October 24, 2013 Yikes. Another sign to never, ever, open a zip file or exe from an email. Avast has an option that asks you whether or not to execute a program. I assume this would help and if some program you didnt open wants to run say no. Awards
djMot Posted October 25, 2013 Member ID: 3189 Group: *** Clan Members Followers: 98 Topic Count: 357 Topics Per Day: 0.07 Content Count: 5257 Content Per Day: 1.09 Reputation: 11146 Achievement Points: 48948 Solved Content: 0 Days Won: 114 Joined: 02/11/12 Status: Offline Last Seen: 6 hours ago Birthday: 12/24/1957 Device: Windows Author Posted October 25, 2013 Yeah, and it might also be a good idea to turn the dreaded User Account Control back ON if you have it off. See here: http://windows.microsoft.com/en-us/windows-vista/turn-user-account-control-on-or-off Awards
Sammy Posted October 25, 2013 Member ID: 3036 Group: ***- Inactive Clan Members Followers: 32 Topic Count: 219 Topics Per Day: 0.04 Content Count: 9419 Content Per Day: 1.92 Reputation: 7515 Achievement Points: 62539 Solved Content: 0 Days Won: 21 Joined: 11/29/11 Status: Offline Last Seen: March 17 Birthday: 04/26/2008 Device: Windows Posted October 25, 2013 A pain in the ass but better that than an infected computer. Awards
FlyingDutch Posted October 25, 2013 Member ID: 6623 Group: *** Clan Members Followers: 10 Topic Count: 46 Topics Per Day: 0.01 Content Count: 221 Content Per Day: 0.05 Reputation: 156 Achievement Points: 2521 Solved Content: 0 Days Won: 0 Joined: 04/01/13 Status: Offline Last Seen: 7 hours ago Birthday: 06/11/1978 Device: Windows Posted October 25, 2013 This is a pain in the arse - though not impossible to get rid of. Involves rebooting into safe mode, checking what software loads up during startup and removing it. Resetting browsers back to standard and then going through your registry. I have successfully removed this a few times from clients pc's. Don't feel you have to reset your computers there is a way out. This sort of virus now has its own category and its called "RansomWare". Don't fall for it - its a complete and utter con ! Awards
djMot Posted October 25, 2013 Member ID: 3189 Group: *** Clan Members Followers: 98 Topic Count: 357 Topics Per Day: 0.07 Content Count: 5257 Content Per Day: 1.09 Reputation: 11146 Achievement Points: 48948 Solved Content: 0 Days Won: 114 Joined: 02/11/12 Status: Offline Last Seen: 6 hours ago Birthday: 12/24/1957 Device: Windows Author Posted October 25, 2013 @FlyingDutch - no. This is not reversible without a decryption key. RansomWare has evolved. There is actually a client/server cryptography engine in this payload. It encrypts files. Once encrypted, you must have the engine and the key from the server to recover those files. I'm not suggesting anyone pay the ransom, but this is effectively no different from viruses that delete or format hard drives. It is almost certainly going to cost you massive data loss if you're infected. Yes you can remove the virus, but removing the virus still leaves you with encrypted, and therefore useless files. Once this badboy has done it's work, you're effectively fucked. As the article points out, the biggest threat is through the social engineering that compels you to take some action out of fear, or even just because you think it's legitimate. I get tons of spam from the USPS, UPS, FedEx, etc., containing "shipping information" or "missed delivery" notifications. Now what it you really had ordered something and got one of these notices at just about the right time? Or what if you actually have an account with Wells Fargo or Chase bank and got an email that appears to be a dead ringer for the legitimate emails you normally get from them. Only this time, you're being told there seemed to be a suspicious attempt to access your account and that you should do this or that to verify the security of your account. I've stopped dead in my tracks more than once and for a moment pondered the authenticity of a message I'd received. But that's just what they're hoping for - a knee-jerk reaction. Pull the trigger - open that file, click that link. BOOM! KaptCrunch, DEEJAYKEG and JohnnyQuest 3 Awards
CobraBites Posted October 25, 2013 Member ID: 2313 Group: Fallen Members Followers: 0 Topic Count: 330 Topics Per Day: 0.06 Content Count: 4924 Content Per Day: 0.95 Reputation: 3034 Achievement Points: 33897 Solved Content: 0 Days Won: 4 Joined: 03/19/11 Status: Offline Last Seen: August 2, 2017 Birthday: 05/26/1974 Posted October 25, 2013 safe bet...dont download shit from emails....dont go to porno sites...best protection in the world rt there....and make sure u have up to date virus system with live online access scanner works for me i dont get no virus at atll... Damage_inc- and JohnnyQuest 2
eidolonFIRE Posted October 25, 2013 Member ID: 2759 Group: **- Inactive Registered Users Followers: 17 Topic Count: 199 Topics Per Day: 0.04 Content Count: 3496 Content Per Day: 0.70 Reputation: 3021 Achievement Points: 26464 Solved Content: 0 Days Won: 3 Joined: 08/22/11 Status: Offline Last Seen: June 16, 2017 Birthday: 07/27/1990 Posted October 25, 2013 Ah, another reason to use linux. I would use linux 24-7 if I could game on linux
Shamu Posted October 27, 2013 Member ID: 715 Group: **- Inactive Registered Users Followers: 8 Topic Count: 418 Topics Per Day: 0.07 Content Count: 2178 Content Per Day: 0.38 Reputation: 1183 Achievement Points: 16606 Solved Content: 0 Days Won: 1 Joined: 11/09/09 Status: Offline Last Seen: October 2, 2023 Birthday: 11/04/1943 Posted October 27, 2013 I had not seen this post before I had put up my post on the same subject. However reading through alerted me to following one of the suggestions. On my main PC I do have an external hard drive and will backup my files there and then disconnect from the PC or turn off. I also run 3 PC's and usually each is updated as it is used. I have my home desktop PC, my business laptop and a desktop PC in my Pocono house. All are kept relatively up to date. FYI, IMHO if you do not already have an external hard drive they are a very good optional item to have on hand. KaptCrunch and JohnnyQuest 2
JohnnyQuest Posted October 27, 2013 Member ID: 1965 Group: Fallen Members Followers: 0 Topic Count: 43 Topics Per Day: 0.01 Content Count: 1176 Content Per Day: 0.22 Reputation: 1082 Achievement Points: 8599 Solved Content: 0 Days Won: 0 Joined: 11/12/10 Status: Offline Last Seen: June 15, 2016 Birthday: 02/11/1969 Posted October 27, 2013 Yeah Shamu....i have always had a 20 dollar docking station with a 1T hdd.usb3......always store my backups there and follow the disconnect method as well..its an easy and cheap way to never lose anything...as well i have a 240g ssd that doesn't need a bunch of unnecessary junk on it,hence the docking station...hell i have five year old hdd's from other machines that i use for donours...lol lots of storage,,,and the docking station take both sizes of hdd's a good 20 buck investment.
Damage_inc- Posted October 28, 2013 Member ID: 2048 Group: ***- Inactive Clan Members Followers: 0 Topic Count: 294 Topics Per Day: 0.06 Content Count: 6689 Content Per Day: 1.27 Reputation: 4709 Achievement Points: 48999 Solved Content: 0 Days Won: 5 Joined: 12/15/10 Status: Offline Last Seen: November 29, 2023 Birthday: 05/30/1967 Posted October 28, 2013 OMF ITS LIKE THAT 2000 BUG AGAIN.HOLY FUCK!!! Awards
SirFartalot Posted October 28, 2013 Member ID: 20373 Group: ***- Inactive Clan Members Followers: 9 Topic Count: 8 Topics Per Day: 0.00 Content Count: 32 Content Per Day: 0.01 Reputation: 13 Achievement Points: 287 Solved Content: 0 Days Won: 0 Joined: 10/19/13 Status: Offline Last Seen: February 5, 2018 Birthday: 07/04/1959 Posted October 28, 2013 I don't know why people go out of their way to do this crap. We all enjoy the internet etc. Thanks for letting us know. Cheers Awards
Dukoo Posted October 28, 2013 Member ID: 2527 Group: ** Registered Users Followers: 68 Topic Count: 222 Topics Per Day: 0.04 Content Count: 1958 Content Per Day: 0.38 Reputation: 2029 Achievement Points: 16244 Solved Content: 0 Days Won: 2 Joined: 05/27/11 Status: Offline Last Seen: Yesterday at 07:21 PM Birthday: 02/27/1981 Device: Windows Posted October 28, 2013 Thanks for the Heads up
Recommended Posts