Warning: Trying to access array offset on value of type null in phar://.../vb/vb.phar/bbcode/url.php on line 2 New Virus/Malware/Ransomware you guys need to be aware of - DFW Mustangs

Announcement

Collapse
No announcement yet.

New Virus/Malware/Ransomware you guys need to be aware of

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • #16
    Originally posted by Sgt Beavis View Post
    Yea, we got a warning about it at work a couple of weeks ago. I keep my stuff backed up anyways, so it would be more of a nusance than anything for me. Even my personal machines are backed up to a NAS.
    Any backups or nas is sought out by the malware and encrypted too. Don't keep your backups on the nas connected at all times.

    Comment


    • #17
      Originally posted by Magnus View Post
      Some people are going to have their eyes openned up. Maybe they'll stop clicking every fucking thing they come across when they get hit with this.
      But I was the 1,000,000,000th person and won a free ipad. I'm really lucky too, because it's the 5th one this week. Can't wait til they all show up!
      .

      Comment


      • #18
        It is delivered in several different ways. The main way at the moment is an email from an unknown email address posing as a phone system saying they have a voicemail, with a zip file attached. I've seen it come through as a fake .pdf extension, and as a fake .jpeg extension. Please warn your place of business's IT admin if they are not already aware of this, to do a quick 5 to 10 minute all-hands user education session to warn them of the dangers of opening attachments from unknown senders. This is way more important than any trojan or malware. It has the potential to bring down any size network in a very short amount of time. When I get a minute, I'll get the FBI's message about this posted up. It basically says keep current, uninfected backups off network and stress end-user education.

        Comment


        • #19
          Neil, did you read the last PM I sent you about this garbage?

          Comment


          • #20
            Originally posted by Tx Redneck View Post
            Neil, did you read the last PM I sent you about this garbage?
            I must admit that I did not read it entirely. I saw where you gave me some links about prevention. I will look at it now.

            Comment


            • #21
              Originally posted by Tx Redneck View Post
              Neil, did you read the last PM I sent you about this garbage?
              sharing is caring!

              Comment


              • #22
                Originally posted by GeorgeG. View Post
                sharing is caring!
                This might be something you could use to prevent this piece of malware. That's until the author circumvents this method.

                SRP Protections – The original protection method since CryptoPrevent version 1 was automatically created “SRP” rules (aka “Software Restriction Policies” which are nor…

                Comment


                • #23
                  It worked on one old testbed machine I have, and not on another one, so it seems spotty.

                  The best defense is still user awareness/education.

                  Comment


                  • #24
                    I apologize man, I've still not tested the sample in a VM. Have you had a chance yet?

                    Comment

                    Working...
                    X