Pages:
Author

Topic: Wanna Cry new ? please help (cryptolocker Petya) - page 2. (Read 1829 times)

full member
Activity: 378
Merit: 101
My friend who works for an advertising agency in South Africa had the same message pop up in his machine
legendary
Activity: 1666
Merit: 1285
Flying Hellfish is a Commie
Quote
The server is a laptop without antivirus and firewall.
All important information is stored on the server.

The firm should pay up the $300 ransom and hopefully they will get their data back. Then they should hire an IT guy who is able to set up a server that is not residing inside a laptop in the first place.

This is probably going to be your best bet as the $300 amount is pretty low in all honesty and if the encryption / hacker people aren't going to be dicks and would want to just give your stuff back once they've received payment then you should be all fine and dandy, though first you may want to see how much one of those data recovery people cost before going through with payment. I highly doubt that the recovery of the data is going to cost less than $300 though, so that's probably going to be your call on if you want to feed the virus and roll the dice or roll the dice with people who'll try to get your data back.

Good luck!
legendary
Activity: 1372
Merit: 1252
Dude, what a beast. They already got their first Bitcoin from 8 victims.



https://bitref.com/1Mz7153HMuxXTuR2R1t78mGSdzaAtNbBWX

I don't know if after paying it actually works, I mean the virus is probably still there, and can attack any time.  Undecided Nothing is safe on the internet... Sad

Quote
Two types of people who earn money: One makes antivirus, the other makes a virus

It's not that much, considering that they must have spent endless resources to pull such massive attacks... one starts to wonder how lucrative this is for the bad guys.

The fact that they are bothering to do this to get a couple BTCs I think shows that states and hackers in general are trying to amass as much BTC as possible they all know 1 BTC will be very valuable in the next decade so I expect more and more warfare like this with states attacking each other to steal as much as possible BTC from rivals, so keep your coins safe.
sr. member
Activity: 252
Merit: 250
The server is a laptop without antivirus and firewall.
All important information is stored on the server.
The main issue is here,no antivirus and firewall,majority of people try to reduce their expense without using them and they really do not understand the risk they are taking and the expense they have to encounter when something goes wrong,you have to hire a specialist to recover the files and restore the server ,there is no other way for these sort of mess.
sr. member
Activity: 378
Merit: 250
A server without a antivirus and firewall, really? it is like making love with a prostitute with (you know). I am not being rude but it so careless and too confident at the same time.

Even me when I am with your situation and having a important files there I will be devastated, maybe face the consequences dude and pay that virus and hope to gain access again with your server.
full member
Activity: 140
Merit: 100
It seems pretty immature they cannot make unique address for each infection right? It would be much easier that way, then no communication would be necessary.
I would imagine having the infection calling back to a central server to get keys would be a big weakness, and if the program generated private keys they would have to be sent back to the center somehow.
sr. member
Activity: 378
Merit: 250
BuyAnyLight - Blockchain LED Marketplace
I think it is useless to try to do something to fight with this virus. Reinstall your windows if it doesnt work than yu can try to do smething with your bios system, but all the data will be deffinetly lost Tongue Unfortunatelly bitcoin transactions are invisible and fraud couldn`t be found =)
hero member
Activity: 938
Merit: 502
It seems pretty immature they cannot make unique address for each infection right? It would be much easier that way, then no communication would be necessary.
newbie
Activity: 38
Merit: 0
Oh no this is terrible. I hope this doesn't cause problems for bitcoin. It's on mainstream news here in the uk. But I think mostly Ukraine and Russia affected.
hero member
Activity: 752
Merit: 501
They just send it there and then hide the sends under another address.
Most likely a mixer service address so not to be detected where they eventually end up.
full member
Activity: 140
Merit: 100
Dumb question: if the attackers address is known couldn't their plans be ruined by dusting the address?
legendary
Activity: 2604
Merit: 1036
Quote
The server is a laptop without antivirus and firewall.
All important information is stored on the server.

The firm should pay up the $300 ransom and hopefully they will get their data back. Then they should hire an IT guy who is able to set up a server that is not residing inside a laptop in the first place.
sr. member
Activity: 434
Merit: 270
does it actually encrypts the files or just threatens as a fake warning ?
i have never came in contact with infected machine.

try removing hdd and using it on another machine as  a secondary, even better use it on linux machine., if files are not already encrpted then get backup and do full system reinstall.
legendary
Activity: 1792
Merit: 1283
Yeah looks like this is another Wannacry variant, called 'Petya', it's a pretty big story on most mainstream news websites.

https://www.theguardian.com/world/2017/jun/27/petya-ransomware-attack-strikes-companies-across-europe
https://www.bleepingcomputer.com/news/security/wannacry-d-j-vu-petya-ransomware-outbreak-wreaking-havoc-across-the-globe/

Certainly don't pay, it's not likely that your files will get released.
legendary
Activity: 1904
Merit: 1074
Let this be a warning to everyone to make regular backups of ALL their data. DO NOT simply overwrite your previous backups with new backups,

because you may have to go back a few to get the data without the Ransomeware attached. I keep several sets of backups on DVD's of my most

precious files. I would not use external harddrives to backup my data, because these can be infected too. Large backups can be split over several

DVD's.  Wink
hero member
Activity: 798
Merit: 503
Dude, what a beast. They already got their first Bitcoin from 8 victims.



https://bitref.com/1Mz7153HMuxXTuR2R1t78mGSdzaAtNbBWX

I don't know if after paying it actually works, I mean the virus is probably still there, and can attack any time.  Undecided Nothing is safe on the internet... Sad

Quote
Two types of people who earn money: One makes antivirus, the other makes a virus
legendary
Activity: 1372
Merit: 1252
Hello, guys !
Please help with in fighting the virus.

At the wife at work the server and other computers picked up a virus similar to WannaCry
(All except the wife's computer, to which I installed Comodo)

The server is a laptop without antivirus and firewall.
All important information is stored on the server.



Bitcoin address and email:
1Mz7153HMuxXTuR2R1t78mGSdzaAtNbBWX
[email protected]


Oh boy. Are you from the eastern europe? It looks like a Wannacry variant is spreading fast in parts of Russia and Ukraine:

http://www.financemagnates.com/cryptocurrency/news/cyber-security-experts-say-bitcoin-ransomware-behind-attack-russia-ukraine/

Notice how the picture looks like yours and this other russian guy here:



Yes it looks like you are not the only one. Now I am starting to feel afraid too...


... Not sure whether I wanna laugh or I wanna cry...

So it seems like this is another ransomware attack, different soup, same ingredients, mostly likely a similar virus. Anyone have advice on what to do? (E.g. Backup files...)

The twitter page here is having a commotion there right now.
https://twitter.com/hashtag/petya

The best thing to do will be to wait for an official national announcement as you are not the only one. Hopefully someone will be able to solve this again.


A good reminder to backup your data immediately, starting by your bitcoin private keys. In fact, im going to do that right now.
legendary
Activity: 1792
Merit: 1283
Do you remember from what file you got the virus? Anything you've opened that you shouldn't have?
Possibly some attachement from an e-mail or something?

If you're lucky, there are decryption key's available for that type of ransomware, but I can't identify it from that screenshot.
hero member
Activity: 798
Merit: 503
Yes it looks like you are not the only one. Now I am starting to feel afraid too...


... Not sure whether I wanna laugh or I wanna cry...

So it seems like this is another ransomware attack, different soup, same ingredients, mostly likely a similar virus. Anyone have advice on what to do? (E.g. Backup files...)

The twitter page here is having a commotion there right now.
https://twitter.com/hashtag/petya

The best thing to do will be to wait for an official national announcement as you are not the only one. Hopefully someone will be able to solve this again.
hero member
Activity: 2142
Merit: 758
NO WAR ! Glory to Ukraine !
It seems that this is all over our country (Ukraine), large transport companies and banks are affected (I was told so, I can not confidently assert)
Pages:
Jump to: