Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Crypto Locker Ransomware

Status
Not open for further replies.

dan2229

Technical User
Sep 25, 2006
196
US
I have recently been seeing news about the Cryptolocker Ramsomware that could be in an email sent to me. What I read is that it may appear as a FedEx, UPS, or DHL email.

What can be done to prepare for this? I use Avast.

Can a Restore point help in case of an attack?

Daniel
 
How prepared to you want to be? you could go to the nth degree and have a nice UTM device at home (I use Sophos UTM because Im a geek) and protect more of your network at the door rather than trying to get the robbers out of your house, keep the door locked. It also gives me full Sophos AV clients managed from the device. The home version is fully featured and free for 50 internal IP addresses.

You could use windows built in back up. it will recreate a full image of your drive and help with restoration of files. I use an external USB drive for this. Keeping AV up to date it good.

ACSS - SME
General Geek

 
Protection is one thing, but prevention is another. Sketchy web sites, free downloads, adult content, opening strange emails or following links in emails - these are the paths of infection. But, if you want to visit more than your bank's web site and read email from more than a few people, I guess you have to live with some risk.

That is a particularly bad piece of malware with no real way to unencrypt without paying. It's the next level of ransomware where the hostage (your data) is often killed. OFFLINE backup is your friend here. I see that it can infect external hard drives as well and so ONLINE backup (not online meaning the web) is not helpful.

I would probably use any of the free anti-virus products along with the paid version of MBAM to protect someone that was very important. But the a-v must be set up to ignore the MBAM processes running or there will be a conflict.

"Living tomorrow is everyone's sorrow.
Modern man's daydreams have turned into nightmares.
 
The US-Computer Readiness Team (US-CERT) has issued this warning about this ransomware.


James P. Cottingham
I'm number 1,229!
I'm number 1,229!
 
Already had several of them sent to me, .... Avast killed them as K9 was scanning the message.

Chris.

Indifference will be the downfall of mankind, but who cares?
Time flies like an arrow, however, fruit flies like a banana.
Webmaster Forum
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top