Ransomeware? - Coronavirus discussion in Torrevieja: Covid-19 news and updates - Torrevieja forum - Costa Blanca forum in the Alicante province of Spain
Blacktower Financial Management
AA Free English TV
POSITIVE BELIEFS
Thy Will Be Done
Car Key Solutions
Gran Alacant Insurances
Costa Blanca Building Specialists
Gentlevan Removals
James Spanish School
Airport Service Taxi Mil Palmeras  Torre de la Horadada
ASSSA Insurance
Expat Services
Espana Dream Properties
interior building work
Jennifer Cunningham Insurances SL

Join the Torrevieja forum

Join the Torrevieja forumMy name's Alex and this is my website all about Torrevieja in Spain. Register now for free to talk about Coronavirus discussion in Torrevieja: Covid-19 news and updates and much more!

Ransomeware? - Page 3

Mrmike

Posted: Mon Jan 15, 2024 12:48pm

Mrmike

Original Poster

Helpful member

Posts: 563

271 helpful points

Location: Torrevieja

Joined: 6 Dec 2019

Posted: Mon Jan 15, 2024 12:48pm

Cpop wrote on Mon Jan 15, 2024 11:14am:

I have three fully working android tablets (2 Samsung, 1 Lenovo) that no longer receive updates as they are "too old". 

I cannot even access YouTube or many other apps I used them for, they just stopped.

Along with my corrupted hard drive, they are just paperweights now.

I have "Always" hacked my phones and tablets ever since it was possible (Jailbreaks with iOs then). I still use a 2011 Xperia as a back up, running custom firmware from 5 or 6 years later and it is pocket size. I have other more modern Androids which I updated but the batteries have almost died so they are not much use. I have modded Motorola V3XX and V9, no virus probs with thosem batteries are getting a bit expebnsive though. I have an old Lenovo tablet upgraded to 8.1 which works fine as a navigator, better than commercially bought TomTom Go.with lifetime upgrades ! Whose lifetime, the battery's? I would check out the updates available for your tablets, the more popular ones appear to have many unofficial custom upgrades bringing them into the 2020s

My every day Xperia is rooted and runs custom firmware. OTA updates from Sony are a definite No No.

Cheers

Mike

Georgetheseventh

Posted: Tue Jan 23, 2024 2:24pm

Georgetheseventh

Helpful member

Posts: 349

166 helpful points

Location: Catral

Joined: 21 Sep 2018

Posted: Tue Jan 23, 2024 2:24pm

Mrmike wrote on Sat Jan 6, 2024 12:44am:

I have a usb Endoscope which I bought a couple of years ago when I was using Win 8.1. I have since moved on to win10.

A couple of days ago, I wanted to look at a part of the engine of my car to ascertain the location of the slight oil leak. I connect the endoscope to the PC, nothing, no way was it going to work, new drivers were needed for Win 10. I looked for drivers  (for Viewplaycap) found some from the ...

...company or so it seemed. Downloaded, still didn't work but something had happened to the widgets on the screen. Some had gone grey and had a name ending in "CDMX"  Win Defender was giving me lots of notifications! I found that I had managed to pick up the latest version of a Ransomeware asking for $999 to decrypt my files. After many hours I managed to remove the malware, BUT, almost all of my folders contain Encrypted files- Docs, Pdfs, Jpegs,Mpegs and exe files. At a Guess over 90% of my PC is encrypted.

It appears that there is no possible decryption because the key is held by the Ar**holes that do these things, It seems they are in Vietnam! I have problems with Google, Amazon, Linkedin, Facebook, instagram and who knows what else.

I have decided that I will wipe most my now useless data, I will then rebuild from the folders Upwards, in windows 10 and on a parallel machine dedicated to Linux. The folders will be the same and data and programs will be the same wherever possible. I will review the situation in a few months and decide which way to go, win or linux. Given that virtually all of my PC problems over the years have been caused by updates from Microsoft, I am fairly sure that the shift to linux will prove to be better. The similarity with Android phones and their operating systems being a further advantage, given that I always root my phones. Anyway be very careful what you download.

Happy 2024 (Not for me)

M

Havent see this for a while but a simple restore point used to fix ransomeware, Make sure you have at least one and try to make one a month or so. A roll back then gets you to the point before. For the more adventurous Norton Ghost restore stamps absolute sector copy including passwords etc, keep a Ghost copy of your drive on an external device, or pay a techie to do it for you, cheap.

Mrmike

Posted: Tue Jan 23, 2024 5:52pm

Mrmike

Original Poster

Helpful member

Posts: 563

271 helpful points

Location: Torrevieja

Joined: 6 Dec 2019

Posted: Tue Jan 23, 2024 5:52pm

Georgetheseventh wrote on Tue Jan 23, 2024 2:24pm:

Havent see this for a while but a simple restore point used to fix ransomeware, Make sure you have at least one and try to make one a month or so. A roll back then gets you to the point before. For the more adventurous Norton Ghost restore stamps absolute sector copy including passwords etc, keep...

... a Ghost copy of your drive on an external device, or pay a techie to do it for you, cheap.

I am still getting rid of what it did, Have deleted nearly 200Gigs of data, I wanted to keep the file names whenever possible to repopulate later, I have stuff everywhere that has been encrypted, even Microsoft updates were encrypted. Other data does not appear encrypted ie. it has no ".cdmx " but it is corrupted too. Luckily It did not affect mail or anything on external servers but It did block access to most services and also created accounts for me on things like "Linkedin" with diferent logins and profiles. It also encrypts restore point data, so that doesnt work. Getting rid of the ransomeware and the trojans that it brought with it was a bit daunting and changes made to the registry were removed with great care. I keep no important PWs on the PC.

Slowly getting back full control.

M

Georgetheseventh

Posted: Tue Jan 23, 2024 8:56pm

Georgetheseventh

Helpful member

Posts: 349

166 helpful points

Location: Catral

Joined: 21 Sep 2018

Posted: Tue Jan 23, 2024 8:56pm

Mrmike wrote on Tue Jan 23, 2024 5:52pm:

I am still getting rid of what it did, Have deleted nearly 200Gigs of data, I wanted to keep the file names whenever possible to repopulate later, I have stuff everywhere that has been encrypted, even Microsoft updates were encrypted. Other data does not appear encrypted ie. it has no ".cdmx " bu...

...t it is corrupted too. Luckily It did not affect mail or anything on external servers but It did block access to most services and also created accounts for me on things like "Linkedin" with diferent logins and profiles. It also encrypts restore point data, so that doesnt work. Getting rid of the ransomeware and the trojans that it brought with it was a bit daunting and changes made to the registry were removed with great care. I keep no important PWs on the PC.

Slowly getting back full control.

M

wow...i have been out of touch for a while but encrypting restore point data is surprising...Ghost is best i think...

Advertisement - posts continue below

Mrmike

Posted: Wed Jan 24, 2024 8:47am

Mrmike

Original Poster

Helpful member

Posts: 563

271 helpful points

Location: Torrevieja

Joined: 6 Dec 2019

Posted: Wed Jan 24, 2024 8:47am

Georgetheseventh wrote on Tue Jan 23, 2024 8:56pm:

wow...i have been out of touch for a while but encrypting restore point data is surprising...Ghost is best i think...

I had been creating restore points every month or so, but none were found. I had several partitions on the SSD but they were all got at. I have half a dozen 500GB hard drives which were not connected and hadn't been untill the pc was clean with most of my stuff from the last 10 years, plus our mail.

Claudio59

Posted: Wed Jan 24, 2024 4:10pm

Claudio59

Helpful member

Posts: 155

70 helpful points

Location: Torrevieja

Joined: 6 Feb 2017

Posted: Wed Jan 24, 2024 4:10pm

Mrmike wrote on Wed Jan 24, 2024 8:47am:

I had been creating restore points every month or so, but none were found. I had several partitions on the SSD but they were all got at. I have half a dozen 500GB hard drives which were not connected and hadn't been untill the pc was clean with most of my stuff from the last 10 years, plus our mail.

Restore points are hardly useful in such attacks, best way is to manually ( a pain in the ***) I know.. back up all important files and folders, bookmarks and whatever on an external HDD on a regular basis, I do it once a month or more, on two separate drives to be sure, one can fail you still have another...I repeat it's a painstaking job but once one gets used to it it's fine and ALL your data stays in your possession, no clouds or anything external to your own PC.

If one gets attacked then simply wipe everything or better remove drive and replace it with a new one (or get it done by a professional) then restart from scratch with a new OS, not cheap but worth it for most of us and you don't pay anyone a ransomware.

Another point is that "assuming" one were to be naive enough to pay to have its data released you'd have to ask yourself:

- Will you really get everything back?

- Will you be sure nothing else is infected to get you to pay more in some time?

The hackers WILL STILL have all your files, do you like that?

Just be careful when downloading, it's the best we can do.

harvest

Posted: Sun Jan 28, 2024 2:48pm

harvest

Helpful member

Posts: 184

149 helpful points

Location: Denia

Joined: 23 Dec 2020

Posted: Sun Jan 28, 2024 2:48pm

My pc is backed up on a weekly basis to a separate external drive. I use the free AOMEI backup software that does it automatically.

Sign up for free or login to reply to this topic

Want to reply to this topic? Login or register for free to post your message:

Find more Coronavirus discussion topics from a particular area:


Register for free!

Login to your account

Blacktower Financial Management
AA Free English TV
POSITIVE BELIEFS
Thy Will Be Done
Car Key Solutions
Gran Alacant Insurances
Costa Blanca Building Specialists
Gentlevan Removals
James Spanish School
Airport Service Taxi Mil Palmeras  Torre de la Horadada
ASSSA Insurance
Expat Services
Espana Dream Properties
interior building work
Jennifer Cunningham Insurances SL
Advertise your business here
Advertise your property
Help with my computer