Ransomware and Recent Variants

Discussion in 'malware problems & news' started by ronjor, Mar 31, 2016.

  1. Trooper

    Trooper Registered Member

    Joined:
    Jan 26, 2005
    Posts:
    5,507
    That was it exactly. I understand how the test works but. Me being out of it of late forgot that my Asus Router is not my router at the moment, its in access point mode. Had to log into my crappy Verizon Actiontec router and sure enough, ICMP was turned on. Disabled it and all is well again. Thanks man.
     
  2. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Jaff ransomware server also hosting Dark Web PII fencing operation
    https://www.scmagazine.com/jaff-ran...ark-web-pii-fencing-operation/article/666461/
     
  3. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,926
    Location:
    Texas
  4. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,926
    Location:
    Texas
    MacRansom RaaS Potentially Created by Copycats
     
  5. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    GPAA Ransomware Shows the Depravity of Some Ransomware Developers
    https://www.bleepingcomputer.com/ne...-the-depravity-of-some-ransomware-developers/
     
  6. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    https://threatpost.com/decryption-utility-unlocks-files-encrypted-by-jaff-ransomware
     
  7. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Decrypted: Kaspersky Releases Decryptor for the Jaff Ransomware
    https://www.bleepingcomputer.com/ne...y-releases-decryptor-for-the-jaff-ransomware/
     
  8. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    http://blog.trendmicro.com/trendlab...fileless-code-injecting-sorebrect-ransomware/
     
  9. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,926
    Location:
    Texas
  10. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
  11. boredog

    boredog Registered Member

    Joined:
    Feb 1, 2015
    Posts:
    2,499
    Linux systems have been targeted a lot in the past 10 years. Because the bad guys know there are a lot of Linux based servers world wide. Most of the distros seems to very fast to patch things though. I been running Kubuntu for two years on my sisters computer and she know nothing about computers. When I get the urge I run Mint from a USB stick. It is a very fast OS even run form a USB stick.
     
  12. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    http://blog.emsisoft.com/2017/06/21/ransomware-encryption-methods/
     
  13. guest

    guest Guest

    http://www.majorgeeks.com/files/details/trend_micro_ransomware_file_decryptor.html
    or
    https://success.trendmicro.com/portal_kb_articledetail?solutionid=1114221
     
  14. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Do porn and your smart phone will go blind ..................
    https://www.bleepingcomputer.com/ne...omware-targets-the-us-with-fake-pornhub-apps/
     
  15. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,926
    Location:
    Texas
    New ransomware, old techniques: Petya adds worm capabilities
     
  16. lotuseclat79

    lotuseclat79 Registered Member

    Joined:
    Jun 16, 2005
    Posts:
    5,390
  17. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    https://threatpost.com/decryption-key-to-original-petya-ransomware-released
     
  18. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    http://blog.emsisoft.com/2017/07/12/nemucodaes-ransomware-removal-decrypt/
     
  19. guest

    guest Guest

    https://blog.360totalsecurity.com/en/ransomware-decryption-tool-petya-wannacry-released/

    Alternative download:
    http://www.majorgeeks.com/files/details/360_ransomware_decryption_tools.html
     
  20. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Petya malware behavior may change based on AV installed
    http://searchsecurity.techtarget.co...are-behavior-may-change-based-on-AV-installed
     
  21. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,077
    Location:
    DC Metro Area
    "Android’s WannaCry “SLocker” source leaks online

    A piece of mobile ransomware that mimics the methods of WannaCry malware has leaked online. The source code for the malicious software has been spilled to the web, allowing this “SLocker” to be downloaded and spread ad infinitum. The source code might also give security experts an easy way to ramp up protection against the malicious code..."

    https://www.slashgear.com/androids-...-leaks-online-heres-how-to-avoid-it-24492714/
     
  22. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,926
    Location:
    Texas
  23. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Locky Ransomware Returns with Spam Campaign Pushing Diablo6 Variant
    https://www.bleepingcomputer.com/ne...s-with-spam-campaign-pushing-diablo6-variant/
     
  24. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Cerber ransomware using Magnitude EK and binary padding
    https://www.scmagazine.com/cerber-s...s-own-gate-and-binary-padding/article/681188/
     
  25. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    http://blog.emsisoft.com/2017/08/15/ransomware-payment-methods/
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.