CryptoLocker - plea...
 

MegaSack DRAW - This year's winner is user - rgwb
We will be in touch

[Closed] CryptoLocker - please be aware

17 Posts
17 Users
0 Reactions
222 Views
Posts: 77696
Free Member
Topic starter
 

There's a particularly evil piece of Malware doing the rounds at the moment, called CryptoLocker.

On infection, it encrypts files both locally and on mapped network drives with RSA 2048-bit encryption. The only way to regain access is to pay the people behind it $300, which a lot of people are actually doing at the moment.

The most common form of infection at the moment is via attachments on unsolicited emails, so be careful what you click on. There's some good technical information on the [url= http://www.bleepingcomputer.com/virus-removal/cryptolocker-ransomware-information ]Bleeping Computer[/url] website, along with some steps you can take at a Group Policy level if you're responsible for a corporate network.

Yet another reason why a) you should take regular backups of anything important, and b) why "RAID" is not "backup." Also of note is it'll attack mapped network drives, so that backup you've painstakingly created on your permanently connected USB hard disk / NAS? Worthless.


 
Posted : 18/10/2013 10:40 am
Posts: 4324
Full Member
 

Thanks Cougar.

Time to re-read Reamde?


 
Posted : 18/10/2013 10:46 am
Posts: 65994
Full Member
 

I was just thinking that. But no, nobody's got that much time.


 
Posted : 18/10/2013 11:14 am
Posts: 0
Free Member
 

Hmm, that's a nasty one


 
Posted : 18/10/2013 11:20 am
Posts: 13618
Free Member
 

So these people you have to pay, are they not...criminals?


 
Posted : 18/10/2013 11:42 am
Posts: 251
Full Member
 

[i]are they not...criminals? [/i]

of course.

But that's why it's called ransomware?


 
Posted : 18/10/2013 11:44 am
Posts: 279
Free Member
 

More details [url= http://arstechnica.com/security/2013/10/youre-infected-if-you-want-to-see-your-data-again-pay-us-300-in-bitcoins/ ]in this article[/url]


 
Posted : 18/10/2013 12:18 pm
 grum
Posts: 4531
Free Member
 

Does this affect Macs or just PCs?


 
Posted : 18/10/2013 12:22 pm
Posts: 2
Free Member
 

[i]So these people you have to pay, are they not...criminals? [/i]

my understanding is that...

1. Physical crime is on the decrease.
2. That's because cyber crime is now on the increase but it's not reported in the same stats.
3. Statistically, you are now more likely to become a victim of cyber crime than physical crime.
4. Only one police force in the whole country is spending any real money on investigating and attempting to convict perpetrators of cyber crime.


 
Posted : 18/10/2013 12:23 pm
Posts: 30656
Free Member
 

Does this affect Macs or just PCs?

If it needs an executable to run, then just PC.


 
Posted : 18/10/2013 12:25 pm
Posts: 4097
Free Member
 

So if you keep your backups offline and isolated, problem solved?


 
Posted : 18/10/2013 12:36 pm
Posts: 0
Free Member
 

If it needs an executable to run, then just PC.

Unless you happen to have a PC on a network of macs, which share their HDs to the PC. Or, if you are running Windows in a VM. Both of those apply to me, and I don't like the thought...


 
Posted : 25/10/2013 11:27 am
Posts: 8
Free Member
 

MS needs to increase the AppContainers protocol to 'normal' windows programs (not just Metro). I think MacOSX has had sandboxing since Lion and they got really strict on it in Mountain Lion.


 
Posted : 29/10/2013 5:39 pm
Posts: 19452
Free Member
 

Bloody hell ... what an interesting idea for extorting money from others.

Time to unplug external backup hdd ...

😯


 
Posted : 29/10/2013 6:31 pm
Posts: 91098
Free Member
 

If it needs an executable to run, then just PC.

Surely Macs have executable files too.. they just aren't suffixed .exe


 
Posted : 29/10/2013 6:44 pm
Posts: 0
Free Member
 

"...be careful what you click on! more info Here ( Hyperlink ) love it. As easy as that...


 
Posted : 29/10/2013 9:01 pm
Posts: 77696
Free Member
Topic starter
 

Further to this,

http://nationalcrimeagency.gov.uk/news/256-alert-mass-spamming-event-targeting-uk-computer-users


 
Posted : 15/11/2013 10:17 pm
Posts: 0
Free Member
 

Surely Macs have executable files too.. they just aren't suffixed .exe

In Linux-world the file would not have executable permission set after being downloaded because of the file creation mask (umask). In Linux the filename/extension means nothing, it is merely symbolic/information as to what the contents of the file might be.. whether you can write or read or execute, [u]the permissions[/u] - that is the important thing and and whether the OS can understand the contents of the file

MAC being BSD based is probably the same

----------------------------
Ah a windows executable

Buy Adobe software (and have your details exposed), Run windows after spending £££, pay for anti virus, be exposed to things like this

Or come to the darkside pay nothing and chill...


 
Posted : 15/11/2013 10:47 pm