User Panel
Posted: 2/28/2024 3:32:57 PM EDT
[Last Edit: Grizz272]
This the second time in a month that my wife's laptop has been locked up because of ransom ware.
I suspect it is coming in from facebook dog videos. We are using norton's. It does not seem to help with this. Any suggestions on what to use? What to tell her to stop clicking on? The computer powered up around 8pm last night with no issues. This afternoon it power up normally and has been running with out any issues. No "apparent" sign of the ransom ware. The wife thinks the stuff came from facebook. Her favorite site I think is sketchy the new user sign up sheet seems to have aids and the website owners have not been on the site for months and appears to have not done any up grades in over a year. |
|
All it takes for evil to succeed, is for good people to do nothing. We have been doing nothing long enough. I support Free speech.
|
I doubt its the dog videos.
As for stop clicking, uh just about everything that is unsafe. There is more going on here if this is the second time this month. Is it the same computer as last time? How was that corrected? Is she using your home network, or going to the mall/school/starbucks and connecting to unsecured wifi there? Has she ever tried to click past a "This connection is not secure" warning? Did she open a sketchy email? Did she change her email password and preferences for filtering spam the last time this happened? ETA Do you use a VPN? Have you updated her computer to the latest operating system and latest security profile? Like I said, a lot going on here. |
|
"The simple believe anything, but the prudent give thought to their steps"
|
Get rid of Norton.
|
|
|
You have to provide access to the hacker to enable them to control your PC and thus encrypt it to ransom it. I doubt the affected PC was ever properly cleaned after the first one.
|
|
|
It's time to install a new hard drive and a fresh install of an operating system. Look at bleeping computer for ideas on how to remove the infection. I would consider everything on that computer a total loss from a data standpoint. Bitdefender is the only consumer-grade antivirus I recommend.
There is a reason I run EDR on my personal computers and most of my family as well. |
|
“As always the Laws of Physics are Laws, not suggestions.” Old_Painless
|
Originally Posted By -Obsessed-: You have to provide access to the hacker to enable them to control your PC and thus encrypt it to ransom it. I doubt the affected PC was ever properly cleaned after the first one. View Quote You are probably right about not being cleaned the first time. What is EDR? |
|
All it takes for evil to succeed, is for good people to do nothing. We have been doing nothing long enough. I support Free speech.
|
“As always the Laws of Physics are Laws, not suggestions.” Old_Painless
|
This is what I point most people personally to.
https://www.bitdefender.com/solutions/premium-security.html |
|
“As always the Laws of Physics are Laws, not suggestions.” Old_Painless
|
|
I've had great luck with Trend's internet security. I briefly switched to Avast I think it was and in less than a month I got hit with ransom ware. Luckily for me it was a shitty one that you could get around in safe mode. I immediately went back to Trend.
|
|
Originally posted by System Message: Please use another website for your asshole-picture swapping
Proud Member of Team Ranstad |
She needs to stop opening attachments, even PDF and Office documents can get you now.
|
|
|
As the battery near no power some windows opened and I found out that Norton's update been turnoff. I will start from there. Norton's has been updated and the computer reset. The computer reset and came up normally then the battery died . We are waiting for the battery to recharge before we turn the computer back on and see what happens.
|
|
All it takes for evil to succeed, is for good people to do nothing. We have been doing nothing long enough. I support Free speech.
|
No need for "total protection". Block ads, every ad.
Explain to your wife now fakecrap is mind poison. I am pretty sure you can log into facecrap via Tor. I use linux but I am surprised when I see an ad, not on my PC. |
|
DO NOT allow anyone to track you. Ask me how to protect your data. Trash social media, it's mind poison. Lock down your network! PROTECT PRIVACY!
|
Originally Posted By Grizz272: The wife thinks the stuff came from facebook. Her favorite site I think is sketchy the new user sign up sheet seems to have aids and the website owners have not been on the site for months and appears to have not done any up grades in over a year. View Quote I have concerns about this paragraph, that I think some other people have missed. Are you talking about Facebook's "new user sign up sheet?" Are you saying that Facebook's website owners "have not been on the site and appears to have not done any up grades in over a year?" That's what it seems like you're saying, but that doesn't make any sense. |
|
|
"Some people have issues. Sounds like he signed up for an entire subscription." ~Brohawk
Proud member of Team Ranstad. Arfcom St Jude Mafia 3 years Arfcom callsign: trenchfoot |
Originally Posted By Gunner226: I have concerns about this paragraph, that I think some other people have missed. Are you talking about Facebook's "new user sign up sheet?" Are you saying that Facebook's website owners "have not been on the site and appears to have not done any up grades in over a year?" That's what it seems like you're saying, but that doesn't make any sense. View Quote This a totality different website from Facebook. The sites name is Swapbot. The idea for the site is swapping stuff from one person another. There is a section swapping art that you have drawn yourself. That is the website where the owners have apparently not done any regular site maintenance for over a yr. I know people have tried to buy the site but the owners have declined or not responded to the offers. |
|
All it takes for evil to succeed, is for good people to do nothing. We have been doing nothing long enough. I support Free speech.
|
Well the wife did it again. Now she has learned not to follow links. Just got her pc up and working again.
She knows exactly what she did and followed a link from facebook right to a locked up pc. I think she will listen now. |
|
All it takes for evil to succeed, is for good people to do nothing. We have been doing nothing long enough. I support Free speech.
|
you create an admin account, drop her access to standard user so she can run executibles from her account.
that will slow it down or stop it. too many people running admin accounts when they don't need it. |
|
|
I don't think the OP's wife is actually getting ransomwared. That term usually means all your files get encrypted and you are forced to pay ransom in crypto to get the key to decode your own files.
I think what is happening here is malicious websites popping up a scary sounding window that cannot be easily closed, usually via a javascript exploit. You can very easily prevent these by using a better web browser such as Brave and set the security level to the highest setting. You can also use various plugins on other browsers to increase their security in order to not allow this sort of stuff. If you pony up for the Malwarebytes Pro subscription they have a web browser plug-in that will prevent this as well. But you can do the same thing for free with other software. |
|
|
Which browser is she using? I've seen a few extensions that would re-direct users, and could be sending the user to a site that cannot be exited without closing the browser.
|
|
|
ESET is what you want
|
|
|
Sign up for the ARFCOM weekly newsletter and be entered to win a free ARFCOM membership. One new winner* is announced every week!
You will receive an email every Friday morning featuring the latest chatter from the hottest topics, breaking news surrounding legislation, as well as exclusive deals only available to ARFCOM email subscribers.
AR15.COM is the world's largest firearm community and is a gathering place for firearm enthusiasts of all types.
From hunters and military members, to competition shooters and general firearm enthusiasts, we welcome anyone who values and respects the way of the firearm.
Subscribe to our monthly Newsletter to receive firearm news, product discounts from your favorite Industry Partners, and more.
Copyright © 1996-2024 AR15.COM LLC. All Rights Reserved.
Any use of this content without express written consent is prohibited.
AR15.Com reserves the right to overwrite or replace any affiliate, commercial, or monetizable links, posted by users, with our own.