Free Republic
Browse · Search
General/Chat
Topics · Post Article


1 posted on 06/20/2016 7:31:05 PM PDT by Swordmaker
[ Post Reply | Private Reply | View Replies ]


To: dayglored

For your ping list as a warning as this WILL run from opening an email which has a document reader attached that can execute a Javascript. It starts encrypting files as soon as it is opened.


2 posted on 06/20/2016 7:32:39 PM PDT by Swordmaker (This tag line is a Microsoft insult free zone... but if the insults to Mac users continue..)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker
We just isolated this on a workstation today, removed it from the domain, yanked the Ethernet cable, and reimaged the whole hard drive. The files were totally shot. The network guys traced it back to a file attachment that was saved out on an accounting drive on a local server, and cleaned it before anyone else could get infected. I did the initial triage, and gave the assist getting the PC scrubbed. What a mess. And this little booger actually changes the desktop wallpaper to insert the ransomware warning as the default background. That's a new one. Little maggots.


5 posted on 06/20/2016 7:41:56 PM PDT by Viking2002 (The gargoyles have taken over the cathedral, methinks.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Does anybody know if there would be a problem opening an email with this JavaScript file as an attachment with either a gmail app or gmail via chrome?

Is Google protecting me?

Just hoping.


8 posted on 06/20/2016 8:11:22 PM PDT by InterceptPoint (Still a Cruz Fan but voting for Trump)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

The fools who wrote Javascript seem to have no clue about the “sandbox” theory supposedly behind it.


9 posted on 06/20/2016 8:27:06 PM PDT by GingisK
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

The company I work at has had several pc’s these past 3 months with ransomware. The caller loses all files as the pc is re-imaged.
In my building we have a network drive we can back up all files to which are backed up everyday. I have done this just in case. thos ein other field offices do not all have access. they need to these days.

Back up your files as your personal photos and other files either online or using an external drive then unplug the drive until the next back up.
The files could all be lost in an instant.


11 posted on 06/20/2016 8:43:32 PM PDT by minnesota_bound
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Qiviut

Bookmark


15 posted on 06/20/2016 9:15:26 PM PDT by Qiviut (In Islam you have to die for Allah. The God I worship died for me. [Franklin Graham])
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Bump for later


17 posted on 06/20/2016 9:21:35 PM PDT by RightGeek (FUBO and the donkey you rode in on)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker; Abby4116; afraidfortherepublic; aft_lizard; AF_Blue; amigatec; AppyPappy; arnoldc1; ...
JavaScript Ransomware -- trouble ahead! ... PING!

You can find all the Windows Ping list threads with FR search: just search on keyword "windowspinglist".

Thanks to Swordmaker for the ping!!

18 posted on 06/20/2016 9:22:06 PM PDT by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government.")
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Bump.


21 posted on 06/20/2016 11:29:10 PM PDT by Huntress ("Politicians exploit economic illiteracy." --Walter Williams)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Why aren’t the penalties for the authors of such useless maliciousness far far harsher?


22 posted on 06/20/2016 11:39:31 PM PDT by Teacher317 (We have now sunk to a depth at which restatement of the obvious is the first duty of intelligent men)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Easy to add a Registry entry to prevent JS from running outside of a browser.


24 posted on 06/21/2016 12:33:21 AM PDT by NoLibZone (The US is now as corrupt as Mexico. Hillary will be rewarded. The US is only a Goldman Brand now.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Change .js files to open in Notepad.


29 posted on 06/21/2016 5:34:58 AM PDT by AppyPappy (If you really want to irritate someone, point out something obvious they are trying hard to ignore.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

I never download email to my computer; it’s on Microsoft’s server. Does that make a difference?


35 posted on 06/21/2016 9:06:02 AM PDT by Excellence (Marine mom since April 11, 2014)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Don’t open unknown attachments. Don’t trust known attachments without confirming the source.


36 posted on 06/21/2016 9:58:06 AM PDT by JimRed (Is it 1776 yet? TERM LIMITS, now and forever! Build the Wall, NOW!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Hats off for the tip!


41 posted on 06/21/2016 2:06:28 PM PDT by Mr Radical
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Does anyone know what could be causing my problem with my computer. It still has 7.

On the 13th around 2-3pm central time when I was out of the room, I came back to a black screen but the computer was still on. I hit the keyboard a few times and it came back up but something had opened Windows mail and live and was doing a search of my files. I turned off the internet and closed them all out but the screen kept going black and it kept opening searches. I finally deleted the Mail and Live which I don’t use anyways but I still have it trying the searches. I have the internet unplugged.

I have run several cleaners and virus scans.
Today I was running AVG and it did the blackout a few times and then it was trying to delete AVG. I turned off the computer as soon as I could.

I ended up pinning the Task manager and a few of the others because it often does it several times in a row and even locks and messes with the password entry. I sometimes didn’t even have time to start looking at the tasks or start a scan.

Some of the searches have 0,i6* ect in many combinations.

It also does this in safe mode.
For a while I couldn’t type in msconfig because it wouldn’t let me type i and it would go black for a few seconds and back to opening the search.

Nothing I have done has lasted for more than a few hours.


44 posted on 06/22/2016 12:20:52 AM PDT by CARDINALRULES (Tough times never last -Tough people do. DK57 --RIP 6-22-02)
[ Post Reply | Private Reply | To 1 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson