[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

Fake ransomware?

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 60
Thread images: 11

File: wannacry_05_1024x774.0.png (324KB, 1200x800px) Image search: [Google]
wannacry_05_1024x774.0.png
324KB, 1200x800px
I just had a popup on Chrome that claimed to be a ransomware. I was prevented from closing the window and my computer was getting very slow. I was afraid it was this WannaCry ransomware shit so I quickly shut down my PC and disconnected the internet cable.

I booted back my PC and everything seems fine (files are accessible, Chrome works just fine, system’s speed is normal) and I’m now performing a full system antivirus scan to be sure. Upon opening Chrome history, I realised the popup page refreshed itself probably 1000 times in a minute which I think is why my computer was very slow when it happened.

I suspect it was just a fake ransomware popup no different than those security alert popups. Still, I’m afraid of one thing: Would it be possible that it was a real ransomware but that I shut down my computer so quickly that it didn’t get the chance to fully install itself on my computer? Therefore, would it be possible that it encrypted some of my files without me knowing it? I can’t afford to spend the many weeks it would take to open all of my files one by one to see if everything is alright.

Pic not fully related as I don’t remember fully what was written on the popup as I shut down my computer very quickly.
>>
File: 0807-thats-ignorant.jpg (87KB, 960x540px) Image search: [Google]
0807-thats-ignorant.jpg
87KB, 960x540px
>>60433083
probably scare ware dont worry about it
>>
I believe the pop-up doesn't show until it's encrypted everything already. That way you don't shut your computer down mid encryption and still have access to some files.

So if it were real, no, you're still fully fucked.
Pull the drive from the computer and put it into an external enclosure to read from another computer. See if you can still access your files.
>>
File: dogger.jpg (16KB, 326x326px) Image search: [Google]
dogger.jpg
16KB, 326x326px
sometimes malicious ads will start fucking around on your screen to occupy you while it tries to download an autorun file

i've seen it a couple times, mostly when looking for porn on piratebay back in ye olden days

you made the right choice, just hard reset before it can download the file and you should be fine

if you are paranoid, run avast or something, if you are EXTRA paranoid, reinstall your OS
>>
>>
>>60433083
It is legit. Send money to the Bitcoin address or you WILL lose all your data.
>>
>>60433209
don't listen to this pleb

the white house confirm no reported cases of file recovery after payment

and the only way to tell if it's fake is look at your damn files
>>
File: wikipedia-jew.jpg (44KB, 500x500px) Image search: [Google]
wikipedia-jew.jpg
44KB, 500x500px
>>60433347
come on send the money
>>
>>60433083
You aren't very good with computers, arent you
>>
you can just close the pop up in task manager.
>>
>>60433083
No, you probably had a Java ransomware, those can run independently of OS (so they can infect MacOS, Linux too)
https://isc.sans.edu/forums/diary/Java+Struts2+Vulnerability+Used+To+Install+Cerber+Crypto+Ransomware/22264/
>>
File: 1491811254395.jpg (6KB, 238x192px) Image search: [Google]
1491811254395.jpg
6KB, 238x192px
>>60433129
>plug infected drive into another computer to infect that one also
>>
I get something like this every time I open Pornhub on my phone.
>>
>>60433568
What is it with frog posters and being complete morons? Is it a reddit thing?
>>
>>60433083
>wincuck problems
>>
How the fuck does this even spread? Can I turn off some services/js/java etc. to prevent infecting myself?

There's literally NOTHING on how to PREVENT infection, it's all panic
>>
File: born to feel.jpg (109KB, 608x800px) Image search: [Google]
born to feel.jpg
109KB, 608x800px
>>60435421
for the most part yes
>>
Solution

Install gentoo
>>
>>60436749
mechanism of infection is a protocol called Windows Server Message Block, which enables file sharing across networks like schools, hospitals, companies, etc. Basically only one user has to download the worm for it to spread to all nodes on the network.

It likely won't spread to your computer if you don't click on suspicious shit/ you download the windows patch.
>>
>>60433083
>Would it be possible that it was a real ransomware but that I shut down my computer so quickly that it didn’t get the chance to fully install itself on my computer?
No you faggot. If it was real it would be instantly on your computer, the moment you opened the page. The virus itself is tiny and installs immediately.
>>
>>60436749
>There's literally NOTHING on how to PREVENT infection
if only you could run an antivirus and firewall, too bad for you I guess
>>
>>60436749
>There's literally NOTHING on how to PREVENT infection, it's all panic
update windows, wow you're safe
>>
Wget the web page and look at it yourself doofus
>>
File: IiH1j9K.jpg (104KB, 1280x694px) Image search: [Google]
IiH1j9K.jpg
104KB, 1280x694px
OP here. Complete Avast scan found nothing and everything keeps working just fine.

Guess it was just a fake ransomware popup after all.
>>
>>60433426
hahaha
>>
>>60433083
>I shut down my computer very quickly.
If you have real ransomware, shutting down your computer very quickly will accomplish nothing.
>>
>>60438072
An antivirus wont prevent your typical ransomware outbreak.
These days having an antivirus does not provide a foolproof gateway into the internet. having one is a prerquisite for the common user, but I found myself may times at disbelief on how stupid can the users get.
>>60438083
In this case yes, on other several cases, yes, you can prevent infections, but again, users are really something else, they always find their way to click something they should not click.

The best way to prevent this is having updated backups, and not letting the users ran on administrator level accounts, and even then you can get infected by ransomware.
If you have your backups, and also have images of your system, or at least your installation disks, ransomware can go fuck itself.
>>
>>60433083
Hey guys

Just use antivirus even though the CIA is proven to have backdoors into every single popular one a few years ago.
>>
>>60433083
>his CPU can't reload the same page a 1000 times / minute
>>
What I want to know is how the hell they expect tards to pay in butcoin if they have a non functioning computer. Most wouldn't even know the first thing about getting coin.
>>
>>60433083
Real ransom-ware pops up the message after it has done its mischief. So unplugging etc would be no defense. That's the whole idea.
>>
>>60433083
>using chrome
You're already part of a botnet, don't worry about joining another.
>>
probably just runs something like the script on www.safaricrash.com to make ur shit laggy af
>>
>>60433129
tfw ransomware will never work on you because you have backups and plug the power cable off the pc when you dont use it
>>
>>60442139
ransomware just encrypts your files. You can still use your computer normally.
>>
>>60433568
dumb frogposter
>>
>>60446001
Can you use a recovery CD to get rid of it? I mean it's a fucking CD so it can't get infected
>>
Download the Malwarebytes AntiRansomware program if you are real worried about it

Its free, it actively monitors your hard drives. When it sees encryption going on, it quarantines the program and stops it in its tracks.
If say you were trying to encrypt it yourself, youll get a false positive and you can allow exceptions.

Its pretty great if you are worried about it
>>
>>60446060
How do people like you get to 4chan yet ask such retarded questions?
>>
>>60446170
I don't know, you tell me.
>>
>>60446170
Because all you need is a browser to access 4chan and they don't quiz you on your way in?
>>
>>60446238
And on that web browser you type your stupid a question into the address bar and have a higher chance of getting an answer than posting a dumb question to a place tired of getting dumb questions.

I.e google it.
>>
>>60446389
I don't think anyone in the world before posed question as stupid as that, he probably had no luck googling it.
>>
>>60441709
everyone who posts anime weeb garbage has a higher chance of being a pedo
>>
I have a question. How does Wannacry initially infect a computer? I know the method of how after it gets in, but how does it get in? Is it just through opening an email with the virus or what? How scared should I be about this thing?
>>
>>60443859
in demonstration videos the wanacry malware shows the message a few seconds after it's launched

https://www.youtube.com/watch?v=nLkbWQJgybY
>>
>>60446558
it's probably an email with shady "invoice" or something like that, that's what people think had to do with it
>>
>>60446935
I just watched a video explaining it was a worm actively seeking exploits over the network, you don't even have to open an email and you could get infected.
>>
>>60447083
once it's inside a local network it can spread using that aurora vulnerability. They probably copy&pasted that into their malware, see >>60446919
You could also get a system from the internet this way, though it's not clear if they have really spent an effort on reaching victims this way.
>>
>>60446474
Do any of the newfags remember what this site was started for?
>>
>>60433083
Why haven't you patched your system, or even better upgraded to one that is not vulnerable?
>>
>>60440031
>Avast
Dude... Just no..
>>
File: smug sakura 3.jpg (170KB, 1440x1080px) Image search: [Google]
smug sakura 3.jpg
170KB, 1440x1080px
>>60440031
>avast
lel youre pc is fried
>>
>>60449019
Of course they don't.
They all came straight from MacRumors, Jizzmodo and Reddit in 2010~ onwards.
>>
>>60449422
>>60449538
whats best free anti-virus?
>>
>>60450327
MSE. because it doesn't bother you
>>
>>60450327
Windows come with a very basic anti-virus and most people don't even know
>>
>>60433491
No it prevents you from that plus slow down pc so if you manage to do that it takes hours
>>
>>60452195
It doesn't work, that's why.
Microsoft aren't going to compete with their major partners, are they? But they need to show they're doing something about the glaring holes in Windows.
So they put out a weak, almost invisible AV. If anyone says anything they can point to MSE.
>>
File: Nedry.png (2MB, 1223x666px) Image search: [Google]
Nedry.png
2MB, 1223x666px
>>60449388

My computer is running on Windows 7 and was up-to-date with the Windows updates. Still, as I was browsing not so safe websites and that this ransom window would just not close and that my computer was suddenly very slow, I then feared the worst.
Thread posts: 60
Thread images: 11


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.