Notices
Computer & Technology Related Post here for help and discussion of computing and related technology. Internet, TVs, phones, consoles, computers, tablets and any other gadgets.

CryptoLocker Windows Trojan. Back up your work

Thread Tools
 
Search this Thread
 
Old 20 October 2013, 10:53 AM
  #1  
JackClark
Scooby Senior
Thread Starter
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default CryptoLocker Windows Trojan. Back up your work

I don't normally do alerts for these things anymore, but friends of mine have been going a bit ballistic telling everyone to beware, so here we are.

This one is particularly nasty because it works so well, once you run the trojan it encrypts your files and then asks you to pay to get the files back. This is an old trick, I remember a DOS virus trying the same trick in the early 90's and I'm sure there have been tons of others, but, they weren't very good, this one is.

Right now I believe it's most commonly delivered as an email attachment, but expect to see the same code arriving via many different methods.

TLDR: Make a back up of your important files and keep it offline

http://www.theregister.co.uk/2013/10...ker_ransmware/
Old 20 October 2013, 12:38 PM
  #2  
pimmo2000
Scooby Regular
iTrader: (6)
 
pimmo2000's Avatar
 
Join Date: Sep 2004
Location: On a small Island near France
Posts: 14,660
Received 4 Likes on 4 Posts
Default

Watched the video, clever stuff ..
Old 20 October 2013, 01:09 PM
  #3  
andy97
Scooby Regular
iTrader: (1)
 
andy97's Avatar
 
Join Date: Aug 2004
Location: Api 500+bhp MD321T @91dB Probably SN's longest owner of an Impreza Turbo
Posts: 6,296
Received 118 Likes on 103 Posts
Default

Hdd cloned twice just in case
Old 20 October 2013, 02:04 PM
  #4  
markjmd
Scooby Regular
iTrader: (11)
 
markjmd's Avatar
 
Join Date: May 2009
Posts: 4,341
Received 70 Likes on 50 Posts
Default CryptoLocker Windows Trojan. Back up your work

... or alternatively, don't be such a sp@cker as to open attachments in emails from people you don't know.
Old 20 October 2013, 02:14 PM
  #5  
JackClark
Scooby Senior
Thread Starter
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default

Originally Posted by markjmd
... or alternatively, don't be such a sp@cker as to open attachments in emails from people you don't know.
That's just the first hurdle. What about the people you do know? It won't be long until visiting a slightly dodgy web site will see you trapped. They claim to release your data for $300, I bet that's a scam too. There's a great deal of money to be made here, batten down the hatches.

Backing up applies to Mac users too, fortunately Apple made that easy.
Old 20 October 2013, 04:25 PM
  #6  
Galifrey
Scooby Regular
iTrader: (3)
 
Galifrey's Avatar
 
Join Date: Mar 2006
Location: Corsham
Posts: 1,356
Likes: 0
Received 0 Likes on 0 Posts
Default

I back mine up with windows easy transfer wizard to a dvd, works as well as anything and gives me a sound basis for a reinstall if windows gets a bit clunky
Old 20 October 2013, 04:33 PM
  #7  
JackClark
Scooby Senior
Thread Starter
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default

What's a DVD?
Old 20 October 2013, 05:24 PM
  #8  
Galifrey
Scooby Regular
iTrader: (3)
 
Galifrey's Avatar
 
Join Date: Mar 2006
Location: Corsham
Posts: 1,356
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by JackClark
What's a DVD?
A cheap low capacity blu-ray
Old 20 October 2013, 06:29 PM
  #9  
stevebt
Scooby Regular
iTrader: (8)
 
stevebt's Avatar
 
Join Date: Sep 2002
Posts: 16,732
Received 33 Likes on 19 Posts
Default

Pay for to see your drive? Just format the drive and its gone, will take a couples of hours to put the PC back to its normal state and your done
Old 20 October 2013, 07:10 PM
  #10  
bioforger
Scooby Regular
iTrader: (1)
 
bioforger's Avatar
 
Join Date: Jan 2002
Location: Pig Hill, Wiltsh1te
Posts: 16,995
Received 5 Likes on 5 Posts
Default

Or restore a backedup image in 30 mins with all your apps n settings intact.

Anyway this thread is stupid scare mongering by a mong.
Old 20 October 2013, 11:02 PM
  #11  
JackClark
Scooby Senior
Thread Starter
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default

Really useful info Cockforger, so pleased you appeared on another of my threads.

90% of home Windows users won't have a back up, but that's OK, just format the lot, problem gone. If one person reads this and does a back up, even to a DVD whatever that is then I've achieved.
Old 20 October 2013, 11:07 PM
  #12  
bioforger
Scooby Regular
iTrader: (1)
 
bioforger's Avatar
 
Join Date: Jan 2002
Location: Pig Hill, Wiltsh1te
Posts: 16,995
Received 5 Likes on 5 Posts
Default

My pleasure as always
Old 21 October 2013, 09:41 AM
  #13  
Galifrey
Scooby Regular
iTrader: (3)
 
Galifrey's Avatar
 
Join Date: Mar 2006
Location: Corsham
Posts: 1,356
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by JackClark
Really useful info Cockforger, so pleased you appeared on another of my threads.

90% of home Windows users won't have a back up, but that's OK, just format the lot, problem gone. If one person reads this and does a back up, even to a DVD whatever that is then I've achieved.
Well you are an Apple fan so I expect you to know $hit all about technology, even though you claim it is your work...

Cryptolocker is a non-issue with a decent virus scanner, if you don't have a decent virus scanner then you are a muppet. Bioforger is right it is stupid scaremongering for anyone who has an ounce of intelligence and has a virus scanner installed.
Old 21 October 2013, 09:47 AM
  #14  
JackClark
Scooby Senior
Thread Starter
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default

I probably do more work on Windows machines than you could comprehend.

"Cryptolocker is a non-issue with a decent virus scanner" Show me this wonderful technology that can detect issues before they happen, many have tried and all have failed, any decent virus author runs his product through every antivirus product before launching it. You're a **** if you think you don't need to back up because you run antivirus.

Well, go ahead, take the advice of these ***** over an "Apple Fan" don't bother backing up and don't worry about malicious software, you have antivirus, it detects all known and future threats, McAfee told me so.
Old 21 October 2013, 01:02 PM
  #15  
Graz
Scooby Regular
 
Graz's Avatar
 
Join Date: Jan 2003
Location: 535D M-Sport Touring
Posts: 3,190
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by Galifrey
Cryptolocker is a non-issue with a decent virus scanner, if you don't have a decent virus scanner then you are a muppet. Bioforger is right it is stupid scaremongering for anyone who has an ounce of intelligence and has a virus scanner installed.
Don't all the companies selling anti-virus software write the viruses in the first place though? Keeps them in business after all
Old 21 October 2013, 01:37 PM
  #16  
JackClark
Scooby Senior
Thread Starter
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default

Not true. We did write viruses, sometimes had to, but these were instantly added to the detection list and shared with other antivirus companies, as is standard practice, even though they would never leave the lab.
Old 21 October 2013, 05:22 PM
  #17  
Graz
Scooby Regular
 
Graz's Avatar
 
Join Date: Jan 2003
Location: 535D M-Sport Touring
Posts: 3,190
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by JackClark
Not true. We did write viruses, sometimes had to, but these were instantly added to the detection list and shared with other antivirus companies, as is standard practice, even though they would never leave the lab.
I was joking but it seems like there might have been some truth in it after all
Old 21 October 2013, 05:24 PM
  #18  
Ash170990
Scooby Regular
iTrader: (1)
 
Ash170990's Avatar
 
Join Date: Nov 2011
Location: Near milton keynes
Posts: 840
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by markjmd
... or alternatively, don't be such a sp@cker as to open attachments in emails from people you don't know.
Its even more simple than that.... It usually comes from DHL or parcel force etc, and the attachement is a .exe file lol

We had a customer phone up saying theyd opened the attachement, was nasty stuff.... it came from "amazon" saying her order had been canceled... She even admitted she ahdnt ordered anything lol
Old 21 October 2013, 08:02 PM
  #19  
bioforger
Scooby Regular
iTrader: (1)
 
bioforger's Avatar
 
Join Date: Jan 2002
Location: Pig Hill, Wiltsh1te
Posts: 16,995
Received 5 Likes on 5 Posts
Default

Originally Posted by JackClark
I probably do more work on Windows machines than you could comprehend.

"Cryptolocker is a non-issue with a decent virus scanner" Show me this wonderful technology that can detect issues before they happen, many have tried and all have failed, any decent virus author runs his product through every antivirus product before launching it. You're a **** if you think you don't need to back up because you run antivirus.
He never said he doesn't backup, what he is saying is spot on, really you just need to use common sense to stay safe from malware and viruses and that includes saving attachments from mates and especially family.

As for the detection what you say is true but that's what AV definition updates are for, which usually patch new virii pretty much as soon as they are announced. And if not on the same day pretty much the following day/week. MS patched Crypto in early September and some other variants of it later. So Security Essentials is ok if you use that. You need definition 1.157.1563.0 or above to be "safe".
Old 21 October 2013, 08:11 PM
  #20  
bustaMOVEs
Scooby Regular
iTrader: (31)
 
bustaMOVEs's Avatar
 
Join Date: Jan 2012
Location: The 2dr club
Posts: 12,979
Likes: 0
Received 30 Likes on 21 Posts
Default

Dhl failed delivery one is going around with a link to a file but my mcafee removed the Trojan in that link.
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
Scott@ScoobySpares
Full Cars Breaking For Spares
61
11 January 2021 03:08 PM
Mattybr5@MB Developments
Full Cars Breaking For Spares
33
29 August 2017 07:18 PM
Scott@ScoobySpares
Full Cars Breaking For Spares
7
14 December 2015 08:16 AM
Mattybr5@MB Developments
Full Cars Breaking For Spares
20
22 October 2015 06:12 AM



Quick Reply: CryptoLocker Windows Trojan. Back up your work



All times are GMT +1. The time now is 10:54 PM.