Search the Community
Showing results for tags 'ransomware'.
-
Hey ! Our Truenas core at work was infected with ransomware, the IT guys never turned on snapshots so we're in a bit of a pickle. I wanted to ask if any of you has has experience with this particular ransomware and could point me to a decryption tool, I could not find one on Kaspersky, Avast, Emsisoft nor Nomoreransom. All of our files now have this extension : "DZF2QX5SJ". Attached is also the message as a picture Thanks !
- 3 replies
-
- ransomware
- virus
-
(and 1 more)
Tagged with:
-
i was using this program Splashtop_Wired_XDisplay_Agent for months and then a couple months ago i scanned it in virus total and it shows its a malware so i deleted it: VirusTotal: https://www.virustotal.com/gui/file/fb7d9a5cf6ae1b52786827ab9357062ec5a7a9b49d1faaaaebc4b2e2b1c5f182 JoeSnadbox:https://www.joesandbox.com/analysis/604062/0/html intezer :https://analyze.intezer.com/analyses/8eebff93-815e-478f-911a-e9c5e6ba6f5a but then i scanned it again today in intezer and it shows its clean now can i use it? i couldn't find any alternatives ? intezer today scan :https://analyze.intezer.com/analyses/27cd4886-17cf-44c5-891b-e5d254cb55f5/genetic-analysis hybrid analysis : https://hybrid-analysis.com/sample/fb7d9a5cf6ae1b52786827ab9357062ec5a7a9b49d1faaaaebc4b2e2b1c5f182
-
- cyber security
- spyware
-
(and 2 more)
Tagged with:
-
I've been using Avast Premium Security for years and the experience has always been positive (except for the annoying pop-up ads), but as my current subscription is about to expire I'm left wondering if it is still necessary in this day and age when I keep hearing about how good Windows Defender is. Besides, aren't malware and ransomware the biggest threats these days more so than viruses? Wouldn't be better to invest in a solid firewall and/or malware removal tools (and common sense, of course) instead of relying on these services and the speed with which they update their databases? Avast is offering a pretty awesome discount to renew my subscription, but would that be the right move? Would invest in something like Malwarebytes be a better option instead?
- 4 replies
-
- antivirus software
- malware
-
(and 3 more)
Tagged with:
-
Summary First death directly attributable to ransomware is an infant during birth, alleges lawsuit. Quotes My thoughts We knew the incident was bad and unprecedented back when this happened, but now we have likely proof that ransomware and other infrastructure cybersecurity attacks can literally kill. While unlikely to be a surprise, this is super sobering, and amazingly sad for an infant to be the first likely recorded death due to ransomware. Security with immediate mitigation plans needs to be directive number one for everything and everybody connected to the internet, but ESPECIALLY critical infrastructure of any kind, such as a hospital. Of note: The lawsuit appears to be against the hospital, but they did everything they could manually and appear to have still been attentive...just not as attentive as many more eyes on remote heart monitors and computers monitoring the baby too would've been. As somebody who had a relative saved in the manner that couldn't happen here, I just have no words. ... ... ... Sources https://www.healthcareitnews.com/news/hospital-ransomware-attack-led-infants-death-lawsuit-alleges https://www.wsj.com/articles/ransomware-hackers-hospital-first-alleged-death-11633008116?mod=hp_lead_pos5 https://www.infosecurity-magazine.com/news/infant-first-ransomware-death/ The study mentioned in the last quote, if you wish to delve further than just the death lawsuit: https://www.healthcareitnews.com/news/ponemon-study-finds-link-between-ransomware-increased-mortality-rate https://www.censinet.com/ponemon-report-covid-impact-ransomware/
- 24 replies
-
- security
- ransomware
-
(and 1 more)
Tagged with:
-
Hi So I have been one of the many unfortunate victims to come across ronsomware... I know, not rolling with an anti-virus nowadays is a big no no. I have a load of important documents and loads of sentimental photo's etc that i would like to recover if possible. All my documents have been encrypted with military grade encryption and have to pay a certain fee in order to get a decrypting tool (Which is total BS) I need to find out if there is a way to decrypt and/or recover at least some of my files etc? Thanks so much for all the tech tip videos you guys do. It helps a great load. Keep up the good work
-
Summary A train operating company in the UK, named "Northern", had their self-service ticket machines under a ransomware cyber attack. More than 600 of their ticket machines were attacked. The supplier, Flowbird, said the problem was identified through cyber monitoring systems. Quotes My thoughts This may not be the worst thing that has happened, considering that people buy tickets online and use e-tickets. It's just surprising at times that cyber attacks can happen where you least expect it. Sources Northern's ticket machines hit by ransomware cyber attack - BBC News Self-service ticket machines fault | Northern - Northern (northernrailway.co.uk)
-
I just got attack by this ransomware yesterday. Did not notice it initially when I was just using the computer as normal. After I wanted to open up a file I found out that everything was too late. Any experts here could possibly decrypt it? Or any kind attackers who is reading this will give me back my data as I am just a student with no money and important school files that need to be submitted.
-
Summary A student unknowingly infected the Covid-19 research facility by installing a pirated copy of data visualization software that was unfortunately rigged with the Ryuk ransomware. Quotes My thoughts It's quite disappointing to see how a large research institution focused on Covid-19 allows BYOD to access such critical files via RDP. It is also stupid for the student to ignore Windows Defender's warnings just to save some bucks. But this made me think, why would a well funded research institution not issue company owned laptops and devices? Windows 10 has Windows Autopilot, macOS has zero-touch deployment and provide a legit copy of the data virtualization software. They have backups but aren't up to date? Makes me wonder how frequent their backups are. I know that many in this forum have posted things like "How to get a lifetime Office 365 for free?" or "Keygen crack for Adobe CC" and it's nice that such posts are deleted. Another question I have is how can a student have such clearance with the institution? Is he/she an undergrad intern? or a post-doc candidate? As far as I know, sensitive and confidential data is usually hands-off to students unless they are directly part of the research program. Sources Zdnet
-
Apologies in advance if this is formatted wrong but the community should know about this. Summary In short there is an ongoing global Ransomware attack affecting QNAP devices using a remote access exploit. Files are being are encrypted via password protected 7-Zip Files. Quotes My thoughts More posting this as a PSA style post since there will be people affected such as a person who I was beta-testing for. You can find there thoughts here: https://www.youtube.com/watch?v=S_4p68lDWfA (Language warning as he is less than happy) In short they are far from impressed that this was first an exploit in the first place and that his NAS was internet facing without his knowledge. Sources https://www.bleepingcomputer.com/news/security/massive-qlocker-ransomware-attack-uses-7zip-to-encrypt-qnap-devices/
-
I downloaded an application then suddenly when i install it i turns out a virus then my pc got infected all of my files cannot be opened. The file is .mmpa I dont know anything how to fix this i hope someone can help me here. I don't know if i should just reset my pc or maybe there is a way to fix it without reseting or reformating it
- 8 replies
-
- virus
- infected encrypted data
-
(and 1 more)
Tagged with:
-
so short story, a friend of mine asking me for a favor. He show me a pic of his pc and he asking "why my files can't open and what is .geno ?", i said "that is a virus" he asked again "can you fix that ?" in my case of troubleshooting i never have a problem with ransomware before. question 1 : is there any way to decrypt the file ? question 2 : is fixing ransomware hard ? question 3 : will the file survive from the virus ? i will meet him in the end of this week, i hope someone can help me, thank you in advanced !
-
Image from my laptop screen I am currently facing an issue on my windows PC. All my files have suddenly acquired a .CORONA-LOCK extension. I'm assuming it to be some form of ransom ware though there are no demands so far. Any help?
- 6 replies
-
- ransomware
- virus?
-
(and 2 more)
Tagged with:
-
Hello. I would appreciate it if anyone can help I have a virtual machine on a vmware player 12 my data got hit by a ransomware ryuk and the vmdk file was encrypted .ryk extension added and all data for the virtual machine profile was deleted. I was wondering if anyone has any idea about recovering the vmdk file. I read something about recreating the virtual machine disk discriptor file using esxi host. If anyone can help me if this can or might work or worth trying Note that I have a copy of vmdk file same machine and a copy of the virtual machine configuration if this might help (backed up years ago). Appreciate your help Thank you
- 4 replies
-
- vmware
- virtual mahine
-
(and 2 more)
Tagged with:
-
Source: Infosecurity Magazine Marine Safety Information Bulletin BBC Summary: In mid-December a US maritime facility was successfully attacked by a ransomware called "Ryuk." The facility was crippled "for over 30 hours" while efforts to regain control of the port's systems and network took place. The following is the Coast Guard's suggestions for improving security: Here is an advisory and description of the Ryuk ransomware by the UK's National Cyber Security Center My Thoughts: I find it interesting how in 2019, and probably still in 2020, U.S. critical infrastructure (assuming this was either a government or commercial facility) is still easily susceptible to cyber attacks. Despite the adoption of the NIST Cybersecurity Framework by the U.S. government and the general popularization of cybersecurity awareness over the last few years, we still have boomers in significant positions opening emails and unleashing sophisticated ransomwares and more on critical networks.
- 12 replies
-
- ransomware
- coast guard
-
(and 1 more)
Tagged with:
-
Hey guys, I tried to pirate a game and got ransomware lol I know pathetic, I got most of my files already backed up before but is this something I should worry about?? and can you guys link me to article or videos to get rid of that shit?? And is there anyway I can get back my files? Thank you!!!?
- 3 replies
-
- tech support
- ransomware
-
(and 2 more)
Tagged with:
-
is there any possible way to recover my infected files by the .msop extension ransomware? my pendrive that has my work files and also my school work projects i would appreciate any reply from the community thank you.
-
Guys I need help, my computer got hit by a ransomware virus and all of my files have been encrypted into this .HETS format. I cannot open my files and I searched all over the internet to find any sort of decryption software. I am in serious help as I cannot afford to lose of my data over the past few years. Any help or any tool regarding to break the decryption would be appreciated!
- 8 replies
-
- virus
- ransomware
- (and 4 more)
-
Android ransomware is back Well... Porn users... " Don't forget the love glove! " ?
- 27 replies
-
- android
- ransomware
-
(and 1 more)
Tagged with:
-
Hey guys, my laptop got infected with ransomware and every file in it got encrypted and a (.DOCM) extension added. I tried to delete the extension to some files, some of them opened perfectly and another didn't and got damaged. Also, every folder has a text file named (Restore-My-Files), it contains instructions to open a link in tor browser and follow the instructions. According to what I read on the internet it will ask me to pay money in Bitcoin. Is there any way to fix this issue and remove the virus? and if not and I had to format the whole laptop can I transfer the important data to USB flash drive and after I format I can remove the extension and the virus won't come back? Or should I format the whole laptop?
- 5 replies
-
- virus
- ransomware
-
(and 1 more)
Tagged with:
-
If you dont know, Norsk Hydro (Norweigan Hydro translated) is one of the worlds biggest aluminium producers, with 35 000 people in 40 countries. Its 34,26% owned by Norwegian Goverment. -PCMag The result is that they had to run factories in higher degree of manual operation, and ditch their worksations for smarphones and tablets, as they werent affected. -BBC With manual, They actually just mean automatic communication between different places and factories to make it more efficent probably, because the PLCs and stuff was not affected. That probably means those doing it did not aim or did not have the expertise to do more damage, they most likely just wanted to get some money. They did choose to keep some of the (smaller) factories offline instead of running them in "manual" tho. From what I can find, it affected their factories in US and Europe, but not those other countries. -PCMag Their website also went down. The attack orginated in their systems in the US. At this time, as far as I know, their systems and website is back up and running. They did not pay the ransom, they where able to restore the systems from backups because "good backup systems and routines" Norway's state cyber-security agency was/is helping them deal with it. It is now under investigation by PST (Police Security Service), Kripos (National Criminal Investigation Service), E-tjenesten (intelligence Service) and Europool. My Opinion. I wish things like this wouldnt happen, but it does, thats the world we live in. Its really good that they had good backup systems they used to restore the systems without paying the ransom, but maybe their systems, routines and teaching of employees wasnt good enough to stop it. (it would never be good enough for every possible situation, but still). Maybe someone there opened the wrong email or whatever? Edit: See Update marked as answer Sources: (keep in mind that some of them was written yesterday when it was still ongoing) https://www.pcmag.com/news/367274/ransomware-attack-disrupts-major-aluminum-producer https://www.bbc.com/news/technology-47624207 (And Some Norwegian:) https://www.digi.no/artikler/hydro-jobber-med-a-noytralisere-angrepet-bekrefter-at-pc-parken-er-slatt-ut-av-kryptovirus/460820 https://www.digi.no/artikler/pst-europol-kripos-nsm-og-e-tjenesten-jobber-pa-spreng-for-a-finne-de-skyldige-etter-hydro-angrepet/460859
- 16 replies
-
Ok so i was downloading stuff and somehow i got myself into this mess. All of my files got encrypted, tried to clean my Laptop..... reinstall windows and etc.... No solution so far Is there anything that can be done or i should accept the painful fact that my pictures and all sort of important files are gone.
- 17 replies
-
- virus
- laptop malware
-
(and 4 more)
Tagged with:
-
So i found out I'm infected with this GandCrab Ransomware. How can i remove it?
- 1 reply
-
- malware
- ransomware
-
(and 1 more)
Tagged with:
-
Hey guys, I need help if anyone knows the gandcrab 5.0.3 decryptor or how to decrypt this ransomware my whole pc is infected i have removed this virus but my files are still encrypted.
- 8 replies
-
- ransomware
- virus
-
(and 2 more)
Tagged with:
-
Heya guys, First post just thought of dropin a message here. Anyone of you bumped with *.bip ransomware?
-
- ransomware
- bip
-
(and 1 more)
Tagged with: