It’s been a nice and rainy week in Portland, but that doesn’t mean you need to let your guard down!
Today’s post, is brought to you by the letter “R”, for Ransom-ware. Ransom-ware is software that makes it onto your computer, usually mysteriously, then holds your files captive until you pay a fee. This can be a product that’s sold or a virus that holds your MP3′s hostage.
Recently, Sunbelt Software – Protocol16′s recommended anti-virus company, discovered a new “in the wild” ransom-ware package that encrypts the contents of your hard drive (this is actually arguable as to if it encrypts or just causes problems). This means that your hard drive cannot be read within minutes of having the software installed.
After installation, you’re left with the following message:
If you get this, it’s too late… The hard drive (specific files, actually), has been encrypted and you’re left with a Windows mess that barely works.
After you see this message and your computer shuts down, you’re stuck with a message stating that “Windows has recovered from serious error. Some files can be corrupted. Disk checking is strongly recommended.” This is NOT a Windows error.
Upon attempting to access a file that’s been encrypted, you’re met with another error message stating: “Unable to open the file due to data corruption.” Upon clicking the “Repair” button, you see the next screen:
Hey look everyone, my favorite topic! Software asking for credit card information…
Some files may or may not be encrypted, but the software will continue to nag you to purchase it. They’ll even charge you an activation fee so they don’t need to pay any fee’s for the credit card being run.
Don’t install this program. PLEASE don’t.
I’ll fire up a Virtual Machine here shortly and make an infection video for everyone to see how this works as well.
If you’re reading this and curious what we recommend for anti-virus software, we heavily recommend Vipre. We are a local reseller, so if you’re interested, give us a call and we should be able to get you a discount.
Justin
