Page 1
Page 1
Started By
Message

Cryptoviruses

Posted on 8/23/16 at 8:39 am
Posted by skrayper
21-0 Asterisk Drive
Member since Nov 2012
30853 posts
Posted on 8/23/16 at 8:39 am
My company is seeing a lot of our clients encountering these, and the previous IT job I had we had a couple of sites get hit.

A few recommendations:
A.) Get a good AV program and keep it up to date
B.) Never, ever pay the ransomers
C.) Keep your files backed up. The virus encrypts the files, but does not infect the files themselves. The backed up copies will be clean. It typically targets files with extensions that make them obviously important but nothing that will break the computer itself (like Word docs, Excel spreadsheets, etc).
D.) If you do not have the means for a backup solution, go with Google Docs or Onedrive. You can typically edit the files from within your browser as well.

I only post this because I keep seeing these things pop up
This post was edited on 8/23/16 at 9:37 am
Posted by ThatMakesSense
Fort Lauderdale
Member since Aug 2015
14792 posts
Posted on 8/23/16 at 8:40 am to
Thanks!
Posted by upgrayedd
Lifting at Tobin's house
Member since Mar 2013
134845 posts
Posted on 8/23/16 at 8:41 am to
Posted by SuperSaint
Sorting Out OT BS Since '2007'
Member since Sep 2007
140462 posts
Posted on 8/23/16 at 8:42 am to
Sounds like something you would catch from JMCS
Posted by Halftrack
The Wild Blue Yonder
Member since Apr 2015
2763 posts
Posted on 8/23/16 at 8:42 am to
Do they target important stuff like porn?
Posted by SabiDojo
Open to any suggestions.
Member since Nov 2010
83927 posts
Posted on 8/23/16 at 8:50 am to
I'm into the database. shite, the security is changing. Let me see if I can get into the backport using their own algorithm.

....wait a minute...the coding. It's....changing. Almost as if it's....organic.

OH MY GOD!

I'VE BEEN INFECTED! TRYING TO SHUT DOWN THE MAINFRAME! frick! I CAN'T DO IT! IT'S LOCKING ME OU
Posted by Tigeralum2008
Yankees Fan
Member since Apr 2012
17126 posts
Posted on 8/23/16 at 9:00 am to
Companies should also consider deploying applocker which essentially blocks users from installing programs unless they are on a whitelist.

This prevents installs from illadvised clicking on suspicious links.

some older ransomeware may have a decryptor available but be sure to get them from a reputable AV company.
Posted by fr33manator
Baton Rouge
Member since Oct 2010
123929 posts
Posted on 8/23/16 at 9:02 am to
quote:

Sounds like something you would catch from JMCS



That would be a TalesFromtheCryptovirus
Posted by skrayper
21-0 Asterisk Drive
Member since Nov 2012
30853 posts
Posted on 8/23/16 at 9:38 am to
quote:

Companies should also consider deploying applocker which essentially blocks users from installing programs unless they are on a whitelist.


Sadly, most companies these days have very few locks in place. I've worked some places where the default policy was for everyone to have admin rights on their computers. :facepalm:

Posted by skrayper
21-0 Asterisk Drive
Member since Nov 2012
30853 posts
Posted on 8/23/16 at 9:39 am to
quote:

Do they target important stuff like porn?


No; they're smart enough to not make an enemy of the porn industry
first pageprev pagePage 1 of 1Next pagelast page
refresh

Back to top
logoFollow TigerDroppings for LSU Football News
Follow us on Twitter, Facebook and Instagram to get the latest updates on LSU Football and Recruiting.

FacebookTwitterInstagram