Jump to content

Oh no.... It's happening... IT HAPPENING!!!

 

 

HIDE YOUR CHILDREN!!! BACK UP YOUR DATA!!! THE CRYPT LOCKERS ARE HERE!!!!!!!!!!!!!!!!!!!!!

Andres "Bluejay" Alejandro Montefusco - The Forums Favorite Bird!!!

Top Clock: 7.889 Ghz Cooled by: Liquid Helium   

#ChocolateRAM #OatmealFans #ScratchItHarder #WorstcardBestoverclocker #CrazySexStories #SchnitzelQuest TS3 SERVER

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173158
Share on other sites

Link to post
Share on other sites

Sorry for the bad news, as of right now there is no cure for this virus, there is no way to regen anything. Your only choice is nuke windows(meaning reinstall).

cpu: intel i5 4670k @ 4.5ghz Ram: G skill ares 2x4gb 2166mhz cl10 Gpu: GTX 680 liquid cooled cpu cooler: Raijintek ereboss Mobo: gigabyte z87x ud5h psu: cm gx650 bronze Case: Zalman Z9 plus


Listen if you care.

Cpu: intel i7 4770k @ 4.2ghz Ram: G skill  ripjaws 2x4gb Gpu: nvidia gtx 970 cpu cooler: akasa venom voodoo Mobo: G1.Sniper Z6 Psu: XFX proseries 650w Case: Zalman H1

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173164
Share on other sites

Link to post
Share on other sites

There is no cure for it. I remember a report about it a while back but from what I remember that you needed to pay a sum of money to get your data back.

Andres "Bluejay" Alejandro Montefusco - The Forums Favorite Bird!!!

Top Clock: 7.889 Ghz Cooled by: Liquid Helium   

#ChocolateRAM #OatmealFans #ScratchItHarder #WorstcardBestoverclocker #CrazySexStories #SchnitzelQuest TS3 SERVER

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173182
Share on other sites

Link to post
Share on other sites

Yeah, removing the actual virus is self is fairly easy I think, the problem being that even if you remove it your files are still encrypted.

 

Remember to make lots of back ups guys :)

CPU: 6700k GPU: Zotac RTX 2070 S RAM: 16GB 3200MHz  SSD: 2x1TB M.2  Case: DAN Case A4

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173196
Share on other sites

Link to post
Share on other sites

Time to reinstall windows :P

 

Here's a picture of Steve Ballmer flipping shit to keep you entertained:

29p66wm.jpg

 

Oh Ballmer. How we miss you :'P

Andres "Bluejay" Alejandro Montefusco - The Forums Favorite Bird!!!

Top Clock: 7.889 Ghz Cooled by: Liquid Helium   

#ChocolateRAM #OatmealFans #ScratchItHarder #WorstcardBestoverclocker #CrazySexStories #SchnitzelQuest TS3 SERVER

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173200
Share on other sites

Link to post
Share on other sites

Cryptolocker or variants of use RSA encryption. There is no way to decrypt without the public key. Things like sideband attacks don't work either. If you are running Windows Vista/7 you can run Shadow Explorer which allows you to restore files via the Shadow Copy Service. The infection is very easy to remove, wiping Windows isn't even required.

CPU: i7-3930K @ 4.8GHz MOBO: IV Gene RAM: 16GB Crucial Ballistix Tactical Tracer 1866MHz GPU: GTX 780 Ti CASE: Corsair 350D STORAGE: 2 x Samsung 840 Pro 256 GB, 2x WD Red 4TB
PSU
: EVGA SuperNova 650W DISPLAY: 1 x ASUS VG248QE, 3 x Dell U2414H COOLING: Corsair H100i INPUT: Corsair Vengeance K70, SteelSeries Sensei AUDIO: Sennheiser HD 280 Pro, ATH-M50s, Beredynamic DT770 Pro, Steelseries H Wireless

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173208
Share on other sites

Link to post
Share on other sites

Do they encrypt your files, then run the "Hey, we got you." thing as soon as it's done, or is the timer them actually encrypting your files? 

If I saw this, I would power down immediately. Pull the HDD out of the machine, pop it into a new one, quarantined (Linux or VM), then pull all my files off after a good scan or 10. 

Just saying. Encryption takes time. But I assume they are smart and only let you know once they have you by the balls. But... How do you access your files until without being alerted if they are encrypted?

 

† Christian Member †

For my pertinent links to guides, reviews, and anything similar, go here, and look under the spoiler labeled such. A brief history of Unix and it's relation to OS X by Builder.

 

 

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173226
Share on other sites

Link to post
Share on other sites

I heard it uses cray shit encryption like 2k bit or something like that I cant remember where I heard it .

 Asus M5A99X Evo  - AMD FX-8350 - 16GB Corsair Vengeance 1866Mhz - Corsair 120mm Quiet Edition Fans BenQ XL2411Z- EVGA GTX 980 Superclocked Fractal Design Define R4 - Corsair H100i - 2 TB 7200rpm HDD - Samsung 840 Evo 120GB - Corsair RM750w PSU - Logitech G502 Proteus Core - Corsair K70 RGB MX Red - Audio Technica M50x + Modmic 4.0 - LG 23EA63V x2


Spinthat Spinthat Spinthat Spinthat

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173252
Share on other sites

Link to post
Share on other sites

Do they encrypt your files, then run the "Hey, we got you." thing as soon as it's done, or is the timer them actually encrypting your files? 

If I saw this, I would power down immediately. Pull the HDD out of the machine, pop it into a new one, quarantined (Linux or VM), then pull all my files off after a good scan or 10. 

Just saying. Encryption takes time. But I assume they are smart and only let you know once they have you by the balls. But... How do you access your files until without being alerted if they are encrypted?

 

 

It encrypts the files and then gives you this alert. 

CPU: Intel Core i7-4790k @ 4.7 1.3v  with a Corsair H80 w/Dual SP120s - Motherboard: MSI Z97 gaming 5 - RAM: 4x4 G.Skill Ripjaws X @ 1600 - GPU: Dual PowerColour R9 290- SSD: Samsung NVME SM951 256GB-- PSU: Corsair RM 1000  - Case: NZXT H440 Black/red - Keyboard: Coolermaster CM storm Quickfire TK, Cherry MX blues - Mouse: Logitech G502 - Heaphones: Beyerdynamic DT 770 - Monitors: 3x VE248H Eyefinity 1080P -  Phone: iPhone 6S Plus               Please post your specifications in your post, signature or even better, system page on your profile!

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173271
Share on other sites

Link to post
Share on other sites

You have to reinstall windows so get to it then follow these tips to avoid this in the future

 

 

1. Stop going to naughty places on your primary rig, build a crap thing with ubuntu for that.

 

2. Stop opening ever email you get.

 

3. Common sense is the best antivirus there is.

 

4. Clean up your desktop, seeing that many icons makes my head hurt.

 

 

(also grats, you just announced to the forum that you were watching some really kinky stuff)

-The Bellerophon- Obsidian 550D-i5-3570k@4.5Ghz -Asus Sabertooth Z77-16GB Corsair Dominator Platinum 1866Mhz-x2 EVGA GTX 760 Dual FTW 4GB-Creative Sound Blaster XF-i Titanium-OCZ Vertex Plus 120GB-Seagate Barracuda 2TB- https://linustechtips.com/main/topic/60154-the-not-really-a-build-log-build-log/ Twofold http://linustechtips.com/main/topic/121043-twofold-a-dual-itx-system/ How great is EVGA? http://linustechtips.com/main/topic/110662-evga-how-great-are-they/#entry1478299

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173290
Share on other sites

Link to post
Share on other sites

You have to reinstall windows so get to it then follow these tips to avoid this in the future

 

 

1. Stop going to naughty places on your primary rig, build a crap thing with ubuntu for that.

 

2. Stop opening ever email you get.

 

3. Common sense is the best antivirus there is.

 

4. Clean up your desktop, seeing that many icons makes my head hurt.

 

 

(also grats, you just announced to the forum that you were watching some really kinky stuff)

Actual I dont I think I got  this when I rooted my phone last night

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173306
Share on other sites

Link to post
Share on other sites

Actual I dont I think I got  this when I rooted my phone last night

sure you did

-The Bellerophon- Obsidian 550D-i5-3570k@4.5Ghz -Asus Sabertooth Z77-16GB Corsair Dominator Platinum 1866Mhz-x2 EVGA GTX 760 Dual FTW 4GB-Creative Sound Blaster XF-i Titanium-OCZ Vertex Plus 120GB-Seagate Barracuda 2TB- https://linustechtips.com/main/topic/60154-the-not-really-a-build-log-build-log/ Twofold http://linustechtips.com/main/topic/121043-twofold-a-dual-itx-system/ How great is EVGA? http://linustechtips.com/main/topic/110662-evga-how-great-are-they/#entry1478299

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173311
Share on other sites

Link to post
Share on other sites

You have to reinstall windows so get to it then follow these tips to avoid this in the future

 

 

1. Stop going to naughty places on your primary rig, build a crap thing with ubuntu for that.

 

2. Stop opening ever email you get.

 

3. Common sense is the best antivirus there is.

 

4. Clean up your desktop, seeing that many icons makes my head hurt.

 

 

(also grats, you just announced to the forum that you were watching some really kinky stuff)

You don't have to reinstall windows. I have removed numerous cases of Cryptolocker and its variants with 0 re-infection.

CPU: i7-3930K @ 4.8GHz MOBO: IV Gene RAM: 16GB Crucial Ballistix Tactical Tracer 1866MHz GPU: GTX 780 Ti CASE: Corsair 350D STORAGE: 2 x Samsung 840 Pro 256 GB, 2x WD Red 4TB
PSU
: EVGA SuperNova 650W DISPLAY: 1 x ASUS VG248QE, 3 x Dell U2414H COOLING: Corsair H100i INPUT: Corsair Vengeance K70, SteelSeries Sensei AUDIO: Sennheiser HD 280 Pro, ATH-M50s, Beredynamic DT770 Pro, Steelseries H Wireless

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173343
Share on other sites

Link to post
Share on other sites

try putting the drive in another computer and scanning the drive with an antivirus software

 

Thats what i have done in the past

work it ᕙ༼ຈل͜ຈ༽ᕗ harder, make it (ง •̀_•́)ง better, do it ᕦ༼ຈل͜ຈ༽ᕤ faster, raise ur ヽ༼ຈل͜ຈ༽ノ donger

ᕙ༼ຈل͜ຈ༽ᕗ HARDER, BETTER, FASTER, DONGER! ᕙ༼ຈل͜ຈ༽ᕗ

 

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173356
Share on other sites

Link to post
Share on other sites

You don't have to reinstall windows. I have removed numerous cases of Cryptolocker and its variants with 0 re-infection.

I prefer caution over data preservation

-The Bellerophon- Obsidian 550D-i5-3570k@4.5Ghz -Asus Sabertooth Z77-16GB Corsair Dominator Platinum 1866Mhz-x2 EVGA GTX 760 Dual FTW 4GB-Creative Sound Blaster XF-i Titanium-OCZ Vertex Plus 120GB-Seagate Barracuda 2TB- https://linustechtips.com/main/topic/60154-the-not-really-a-build-log-build-log/ Twofold http://linustechtips.com/main/topic/121043-twofold-a-dual-itx-system/ How great is EVGA? http://linustechtips.com/main/topic/110662-evga-how-great-are-they/#entry1478299

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173366
Share on other sites

Link to post
Share on other sites

Yeah, removing the actual virus is self is fairly easy I think, the problem being that even if you remove it your files are still encrypted.

 

Remember to make lots of back ups guys :)

And make sure that those backups are not connected to the computer so that they don't get encrypted as well.

Desktop: Intel Core i7-6700K, ASUS Z170-A, ASUS STRIX GTX 1080 Ti, 16GB DDR4 RAM, 512 GB Samsund 840 Pro, Seasonic X series 650W PSU, Fractal Design Define R4, 2x5TB HDD

Hypervisor 1: Intel Xeon E5-2630L, ASRock EPC612D8, 16GB DDR4 ECC RAM, Intel RT3WB080 8-port RAID controller plus expansion card, Norco RPC-4020 case, 20x2TB WD Red HDD

Other spare hypervisors: Dell Poweredge 2950, HP Proliant DL380 G5

Laptops: ThinkPads, lots of ThinkPads

 

Link to comment
https://linustechtips.com/topic/86409-cypt-lock/#findComment-1173374
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×